Vulnérabilités
Joomla CMS et extensions — une fiche par CVE, toutes sources fusionnées.
CVE-2018-6609
SQL Injection exists in the JSP Tickets 1.1 component for Joomla!
CRITICAL
CVSS 9.8
CVE-2018-6605
SQL Injection exists in the Zh BaiduMap 3.0.0.1 component for Joomla!
CRITICAL
CVSS 9.8
CVE-2018-6604
SQL Injection exists in the Zh YandexMap 6.2.1.0 component for Joomla!
CRITICAL
CVSS 9.8
CVE-2018-6582
SQL Injection exists in the Zh GoogleMap 8.4.0.0 component for Joomla!
CRITICAL
CVSS 9.8
CVE-2018-6581
SQL Injection exists in the JMS Music 1.1.1 component for Joomla!
CRITICAL
CVSS 9.8
CVE-2018-6580
Arbitrary file upload exists in the Jimtawl 2.1.6 and 2.2.5 component for Joomla!
CRITICAL
CVSS 9.8
CVE-2018-6579
SQL Injection exists in the JEXTN Reverse Auction 3.1.0 component for Joomla!
CRITICAL
CVSS 9.8
CVE-2018-6578
SQL Injection exists in the JE PayperVideo 3.0.0 component for Joomla!
CRITICAL
CVSS 9.8
CVE-2018-6577
SQL Injection exists in the JEXTN Membership 3.1.0 component for Joomla!
CRITICAL
CVSS 9.8
CVE-2018-6575
SQL Injection exists in the JEXTN Classified 1.0.0 component for Joomla!
CRITICAL
CVSS 9.8
CVE-2018-6398
SQL Injection exists in the CP Event Calendar 3.0.1 component for Joomla!
CRITICAL
CVSS 9.8
CVE-2018-6397
Directory Traversal exists in the Picture Calendar 3.1.4 component for Joomla!
HIGH
CVSS 7.5
CVE-2018-6395
SQL Injection exists in the Visual Calendar 3.1.3 component for Joomla!
CRITICAL
CVSS 9.8
CVE-2018-6008
Arbitrary File Download exists in the Jtag Members Directory 5.3.7 component for Joomla!
HIGH
CVSS 7.5
CVE-2018-6007
CSRF exists in the JS Support Ticket 1.1.0 component for Joomla!
HIGH
CVSS 8.8
CVE-2018-5985
SQL Injection exists in the LiveCRM SaaS Cloud 1.0 component for Joomla!
CRITICAL
CVSS 9.8
CVE-2018-5984
SQL Injection exists in the Tumder (An Arcade Games Platform) 2.1 component for Joomla!
CRITICAL
CVSS 9.8
CVE-2018-5696
The iJoomla com_adagency plugin 6.0.9 for Joomla!
CRITICAL
CVSS 9.8
CVE-2018-5263
The StackIdeas EasyDiscuss (aka com_easydiscuss) extension before 4.0.21 for Joomla!
MEDIUM
CVSS 5.4
CVE-2015-7324
Multiple cross-site scripting (XSS) vulnerabilities in helpers/comment.php in the StackIdeas Komento (com_komento) component before 2.0.5 for Joomla!
MEDIUM
CVSS 6.1