Vulnérabilités
Joomla CMS et extensions — une fiche par CVE, toutes sources fusionnées.
CVE-2009-3155
Cross-site scripting (XSS) vulnerability in gmap.php in the Almond Classifieds (com_aclassf) component 7.5 for Joomla!
MEDIUM
CVSS 4.3
CVE-2009-3053
Directory traversal vulnerability in the Agora (com_agora) component 3.0.0b for Joomla!
MEDIUM
CVSS 6.8
CVE-2009-2554
SQL injection vulnerability in the search method in jobline.class.php in Jobline (com_jobline) 1.1.2.2, 1.3.1, and possibly earlier versions, a component for J…
MEDIUM
CVSS 6.8
CVE-2009-2100
Directory traversal vulnerability in the JoomlaPraise Projectfork (com_projectfork) component 2.0.10 for Joomla!
MEDIUM
CVSS 5.0
CVE-2009-1940
Cross-site scripting (XSS) vulnerability in the administrator panel in the com_users core component for Joomla!
MEDIUM
CVSS 4.3
CVE-2009-1939
Cross-site scripting (XSS) vulnerability in the JA_Purity template for Joomla!
MEDIUM
CVSS 4.3
CVE-2009-1938
Cross-site scripting (XSS) vulnerability in Joomla!
MEDIUM
CVSS 4.3
CVE-2009-1496
Directory traversal vulnerability in the Cmi Marketplace (com_cmimarketplace) component 0.1 for Joomla!
MEDIUM
CVSS 5.0
CVE-2009-1280
Multiple cross-site request forgery (CSRF) vulnerabilities in the com_media component for Joomla!
MEDIUM
CVSS 6.8
CVE-2008-6482
PHP remote file inclusion vulnerability in admin.treeg.php in the Flash Tree Gallery (com_treeg) component 1.0 for Joomla!, when register_globals is enabled, a…
MEDIUM
CVSS 6.8
CVE-2009-0730
Multiple SQL injection vulnerabilities in the GigCalendar (com_gigcal) component 1.0 for Mambo and Joomla!, when magic_quotes_gpc is disabled, allow remote att…
MEDIUM
CVSS 6.8
CVE-2008-6222
Directory traversal vulnerability in the Pro Desk Support Center (com_pro_desk) component 1.0 and 1.2 for Joomla!
MEDIUM
CVSS 5.0
CVE-2008-6172
Directory traversal vulnerability in captcha/captcha_image.php in the RWCards (com_rwcards) 3.0.11 component for Joomla!, when magic_quotes_gpc is disabled, al…
MEDIUM
CVSS 6.8
CVE-2008-6080
Directory traversal vulnerability in download.php in the ionFiles (com_ionfiles) 4.4.2 component for Joomla!
MEDIUM
CVSS 5.0
CVE-2009-0378
Cross-site scripting (XSS) vulnerability in index.php in the beamospetition (com_beamospetition) 1.0.12 component for Joomla!
MEDIUM
CVSS 4.3
CVE-2009-0113
Directory traversal vulnerability in attachmentlibrary.php in the XStandard component for Joomla!
MEDIUM
CVSS 5.0
CVE-2008-5793
Multiple PHP remote file inclusion vulnerabilities in the Clickheat - Heatmap stats (com_clickheat) component 1.0.1 for Joomla!
MEDIUM
CVSS 6.8
CVE-2008-4764
Directory traversal vulnerability in the eXtplorer module (com_extplorer) 2.0.0 RC2 and earlier in Joomla!
MEDIUM
CVSS 5.0
CVE-2008-4107
The (1) rand and (2) mt_rand functions in PHP 5.2.6 do not produce cryptographically strong random numbers, which allows attackers to leverage exposures in pro…
MEDIUM
CVSS 5.1
CVE-2008-4104
Joomla! Open Redirect vulnerability
MEDIUM
CVSS 5.8