Vulnérabilités

Vulnérabilités

Joomla CMS et extensions — une fiche par CVE, toutes sources fusionnées.

1225 résultats

CVE-2015-8566 The Session package 1.x before 1.3.1 for Joomla! Extension Joomla (identification incertaine) · 1 source · HIGH CVSS 7.5 CVE-2015-6919 Cross-site scripting (XSS) vulnerability in the googleSearch (CSE) (com_googlesearch_cse) component 3.0.2 for Joomla! googlesearch · 1 source · MEDIUM CVSS 4.3 CVE-2015-6513 Multiple SQL injection vulnerabilities in the J2Store (com_j2store) extension before 3.1.7 for Joomla! j2store · 1 source · HIGH CVSS 7.5 CVE-2014-8607 The XCloner plugin 3.1.1 for WordPress and 3.5.1 for Joomla! xcloner · 1 source · LOW CVSS 2.1 CVE-2014-8606 Directory traversal vulnerability in the XCloner plugin 3.1.1 for WordPress and 3.5.1 for Joomla! xcloner · 1 source · MEDIUM CVSS 4.0 CVE-2014-8605 The XCloner plugin 3.1.1 for WordPress and 3.5.1 for Joomla! xcloner · 1 source · MEDIUM CVSS 5.0 CVE-2014-8604 The XCloner plugin 3.1.1 for WordPress and 3.5.1 for Joomla! xcloner · 1 source · MEDIUM CVSS 5.0 CVE-2014-8603 cloner.functions.php in the XCloner plugin 3.1.1 for WordPress and 3.5.1 for Joomla! xcloner · 1 source · MEDIUM CVSS 6.5 CVE-2015-2562 Multiple SQL injection vulnerabilities in the Web-Dorado ECommerce WD (com_ecommercewd) component 1.2.5 for Joomla! ecommerce_wd · 1 source · HIGH CVSS 7.5 CVE-2015-1478 Cross-site scripting (XSS) vulnerability in the CMSJunkie J-ClassifiedsManager component for Joomla! j-classifiedsmanager · 1 source · MEDIUM CVSS 4.3 CVE-2015-1477 SQL injection vulnerability in the CMSJunkie J-ClassifiedsManager component for Joomla! j-classifiedsmanager · 1 source · HIGH CVSS 7.5 CVE-2014-100009 The Joomlaskin JS Multi Hotel (aka JS MultiHotel and Js-Multi-Hotel) plugin 2.2.1 and earlier for WordPress allows remote attackers to obtain the installation… Extension Joomla (identification incertaine) · 1 source · MEDIUM CVSS 5.0 CVE-2014-100008 Cross-site scripting (XSS) vulnerability in includes/delete_img.php in the Joomlaskin JS Multi Hotel (aka JS MultiHotel and Js-Multi-Hotel) plugin 2.2.1 and ea… Extension Joomla (identification incertaine) · 1 source · MEDIUM CVSS 4.3 CVE-2013-7419 Cross-site scripting (XSS) vulnerability in includes/refreshDate.php in the Joomlaskin JS Multi Hotel (aka JS MultiHotel and Js-Multi-Hotel) plugin 2.2.1 for W… Extension Joomla (identification incertaine) · 1 source · MEDIUM CVSS 4.3 CVE-2014-9103 Multiple cross-site scripting (XSS) vulnerabilities in the Kunena component before 3.0.6 for Joomla! kunena · 1 source · MEDIUM CVSS 4.3 CVE-2014-9102 Multiple SQL injection vulnerabilities in the Kunena component before 3.0.6 for Joomla! kunena · 1 source · MEDIUM CVSS 6.5 CVE-2014-3863 Cross-site scripting (XSS) vulnerability in the JChatSocial component before 2.3 for Joomla! jchatsocial · 1 source · MEDIUM CVSS 4.3 CVE-2014-4960 Multiple SQL injection vulnerabilities in models\gallery.php in Youtube Gallery (com_youtubegallery) component 4.x through 4.1.7, and possibly 3.x, for Joomla! com_youtubegallery · 1 source · HIGH CVSS 7.5 CVE-2013-5956 Cross-site scripting (XSS) vulnerability in includes/flvthumbnail.php in the Youtube Gallery (com_youtubegallery) component 3.4.0 for Joomla! com_youtubegallery · 1 source · MEDIUM CVSS 4.3 CVE-2013-5951 Multiple cross-site scripting (XSS) vulnerabilities in eXtplorer 2.1.3, when used as a component for Joomla!, allow remote attackers to inject arbitrary web sc… Extension Joomla (identification incertaine) · 1 source · LOW CVSS 2.6