Vulnérabilités
Joomla CMS et extensions — une fiche par CVE, toutes sources fusionnées.
CVE-2015-8566
The Session package 1.x before 1.3.1 for Joomla!
HIGH
CVSS 7.5
CVE-2015-6919
Cross-site scripting (XSS) vulnerability in the googleSearch (CSE) (com_googlesearch_cse) component 3.0.2 for Joomla!
MEDIUM
CVSS 4.3
CVE-2015-6513
Multiple SQL injection vulnerabilities in the J2Store (com_j2store) extension before 3.1.7 for Joomla!
HIGH
CVSS 7.5
CVE-2014-8607
The XCloner plugin 3.1.1 for WordPress and 3.5.1 for Joomla!
LOW
CVSS 2.1
CVE-2014-8606
Directory traversal vulnerability in the XCloner plugin 3.1.1 for WordPress and 3.5.1 for Joomla!
MEDIUM
CVSS 4.0
CVE-2014-8605
The XCloner plugin 3.1.1 for WordPress and 3.5.1 for Joomla!
MEDIUM
CVSS 5.0
CVE-2014-8604
The XCloner plugin 3.1.1 for WordPress and 3.5.1 for Joomla!
MEDIUM
CVSS 5.0
CVE-2014-8603
cloner.functions.php in the XCloner plugin 3.1.1 for WordPress and 3.5.1 for Joomla!
MEDIUM
CVSS 6.5
CVE-2015-2562
Multiple SQL injection vulnerabilities in the Web-Dorado ECommerce WD (com_ecommercewd) component 1.2.5 for Joomla!
HIGH
CVSS 7.5
CVE-2015-1478
Cross-site scripting (XSS) vulnerability in the CMSJunkie J-ClassifiedsManager component for Joomla!
MEDIUM
CVSS 4.3
CVE-2015-1477
SQL injection vulnerability in the CMSJunkie J-ClassifiedsManager component for Joomla!
HIGH
CVSS 7.5
CVE-2014-100009
The Joomlaskin JS Multi Hotel (aka JS MultiHotel and Js-Multi-Hotel) plugin 2.2.1 and earlier for WordPress allows remote attackers to obtain the installation…
MEDIUM
CVSS 5.0
CVE-2014-100008
Cross-site scripting (XSS) vulnerability in includes/delete_img.php in the Joomlaskin JS Multi Hotel (aka JS MultiHotel and Js-Multi-Hotel) plugin 2.2.1 and ea…
MEDIUM
CVSS 4.3
CVE-2013-7419
Cross-site scripting (XSS) vulnerability in includes/refreshDate.php in the Joomlaskin JS Multi Hotel (aka JS MultiHotel and Js-Multi-Hotel) plugin 2.2.1 for W…
MEDIUM
CVSS 4.3
CVE-2014-9103
Multiple cross-site scripting (XSS) vulnerabilities in the Kunena component before 3.0.6 for Joomla!
MEDIUM
CVSS 4.3
CVE-2014-9102
Multiple SQL injection vulnerabilities in the Kunena component before 3.0.6 for Joomla!
MEDIUM
CVSS 6.5
CVE-2014-3863
Cross-site scripting (XSS) vulnerability in the JChatSocial component before 2.3 for Joomla!
MEDIUM
CVSS 4.3
CVE-2014-4960
Multiple SQL injection vulnerabilities in models\gallery.php in Youtube Gallery (com_youtubegallery) component 4.x through 4.1.7, and possibly 3.x, for Joomla!
HIGH
CVSS 7.5
CVE-2013-5956
Cross-site scripting (XSS) vulnerability in includes/flvthumbnail.php in the Youtube Gallery (com_youtubegallery) component 3.4.0 for Joomla!
MEDIUM
CVSS 4.3
CVE-2013-5951
Multiple cross-site scripting (XSS) vulnerabilities in eXtplorer 2.1.3, when used as a component for Joomla!, allow remote attackers to inject arbitrary web sc…
LOW
CVSS 2.6