Vulnérabilités
Joomla CMS et extensions — une fiche par CVE, toutes sources fusionnées.
CVE-2013-5955
Cross-site scripting (XSS) vulnerability in manage.php in the PBBooking (com_pbbooking) component 2.4 for Joomla!
MEDIUM
CVSS 4.3
CVE-2013-5953
Multiple cross-site scripting (XSS) vulnerabilities in tmpl/layout_editevent.php in the Multi Calendar (com_multicalendar) component 4.0.2, and possibly 4.8.5…
MEDIUM
CVSS 4.3
CVE-2013-5952
Multiple cross-site scripting (XSS) vulnerabilities in the Freichat (com_freichat) component, possibly 9.4 and earlier, for Joomla!
MEDIUM
CVSS 4.3
CVE-2013-1636
Cross-site scripting (XSS) vulnerability in open-flash-chart.swf in Open Flash Chart (aka Open-Flash Chart), as used in the Pretty Link Lite plugin before 1.6.…
MEDIUM
CVSS 4.3
CVE-2013-3933
Cross-site scripting (XSS) vulnerability in the JoomShopping (com_joomshopping) component before 4.3.1 for Joomla!
MEDIUM
CVSS 4.3
CVE-2014-1837
Cross-site scripting (XSS) vulnerability in the StackIdeas Komento (com_komento) component before 1.7.4 for Joomla!
MEDIUM
CVSS 4.3
CVE-2014-0793
Multiple cross-site scripting (XSS) vulnerabilities in the StackIdeas Komento (com_komento) component before 1.7.3 for Joomla!
MEDIUM
CVSS 4.3
CVE-2014-0794
SQL injection vulnerability in the JV Comment (com_jvcomment) component before 3.0.3 for Joomla!
MEDIUM
CVSS 4.3
CVE-2013-7219
SQL injection vulnerability in vote.php in the 2Glux Sexy Polling (com_sexypolling) component before 1.0.9 for Joomla!
HIGH
CVSS 7.5
CVE-2013-3719
Cross-site scripting (XSS) vulnerability in the aiContactSafe component before 2.0.21 for Joomla!
MEDIUM
CVSS 4.3
CVE-2013-3534
Cross-site scripting (XSS) vulnerability in the aiContactSafe component before 2.0.21 for Joomla!
MEDIUM
CVSS 4.3
CVE-2012-6514
Cross-site scripting (XSS) vulnerability in the nBill (com_nbill) component 2.3.2 for Joomla!
MEDIUM
CVSS 4.3
CVE-2012-6503
Unspecified vulnerability in the NinjaXplorer component before 1.0.7 for Joomla!
HIGH
CVSS 10.0
CVE-2010-5286
Directory traversal vulnerability in Jstore (com_jstore) component for Joomla!
HIGH
CVSS 10.0
CVE-2010-5280
Directory traversal vulnerability in the Community Builder Enhanced (CBE) (com_cbe) component 1.4.8, 1.4.9, and 1.4.10 for Joomla!
HIGH
CVSS 7.5
CVE-2012-5232
Cross-site scripting (XSS) vulnerability in the Quickl Form component for Joomla!
MEDIUM
CVSS 4.3
CVE-2012-5230
Unspecified vulnerability in the JE Story Submit (com_jesubmit) component before 1.9 for Joomla!
HIGH
CVSS 7.5
CVE-2012-5101
SQL injection vulnerability in the JExtensions JE Poll component before 1.1 for Joomla!
HIGH
CVSS 7.5
CVE-2006-7247
SQL injection vulnerability in the Weblinks (com_weblinks) component for Joomla!
HIGH
CVSS 7.5
CVE-2012-4868
SQL injection vulnerability in news.php in the Kunena component 1.7.2 for Joomla!
HIGH
CVSS 7.5