Vulnérabilités
Joomla CMS et extensions — une fiche par CVE, toutes sources fusionnées.
CVE-2007-2143
PHP remote file inclusion vulnerability in index.php in the Be2004-2 template for Joomla!
HIGH
CVSS 7.5
CVE-2007-2044
PHP remote file inclusion vulnerability in mod_weather.php in the Antonis Ventouris Weather module for Mambo and Joomla!
HIGH
CVSS 7.5
CVE-2007-2043
Multiple PHP remote file inclusion vulnerabilities in the Avant-Garde Solutions MOSMedia (com_mosmedia) 1.08 and earlier module for Mambo and Joomla!
HIGH
CVSS 7.5
CVE-2007-1704
SQL injection vulnerability in index.php in the Car Manager (com_resman) 1.1 and earlier component for Joomla!
HIGH
CVSS 7.5
CVE-2007-1703
SQL injection vulnerability in index.php in the RWCards (com_rwcards) 2.4.3 and earlier component for Joomla!
HIGH
CVSS 7.5
CVE-2007-1699
Multiple PHP remote file inclusion vulnerabilities in the SWmenu (com_swmenupro and com_swmenufree) 4.0 component for Mambo and Joomla!
HIGH
CVSS 10.0
CVE-2007-1596
Multiple PHP remote file inclusion vulnerabilities in the NFN Address Book (com_nfn_addressbook) 0.4 component for Mambo and Joomla!
HIGH
CVSS 9.3
CVE-2006-7124
PHP remote file inclusion vulnerability in external/rssfeeds.php in BSQ Sitestats (component for Joomla) 1.8.0, and possibly other versions before 2.2.1, allow…
HIGH
CVSS 7.5
CVE-2006-7123
Multiple SQL injection vulnerabilities in BSQ Sitestats (component for Joomla) 1.8.0, and possibly other versions before 2.2.1, allow remote attackers to execu…
HIGH
CVSS 7.5
CVE-2006-7010
The mosgetparam implementation in Joomla!
HIGH
CVSS 7.5
CVE-2006-7009
Joomla! before 1.0.10 allows remote attackers to spoof the frontend submission forms, which has unknown impact and attack vectors.
HIGH
CVSS 7.5
CVE-2006-7008
Unspecified vulnerability in Joomla!
HIGH
CVSS 7.5
CVE-2007-0387
SQL injection vulnerability in models/category.php in the Weblinks component for Joomla!
HIGH
CVSS 7.5
CVE-2007-0382
Multiple SQL injection vulnerabilities in letterman.class.php in the Letterman 1.2.3 (com_letterman) component for Joomla!
HIGH
CVSS 7.5
CVE-2007-0374
SQL injection vulnerability in (1) Joomla!
HIGH
CVSS 7.5
CVE-2006-6843
PHP remote file inclusion vulnerability in the BE IT EasyPartner 0.0.9 beta component for Joomla!
HIGH
CVSS 7.5
CVE-2006-6833
com_categories in Joomla!
HIGH
CVSS 7.5
CVE-2006-6419
jce.php in the JCE Admin Component in Ryan Demmer Joomla Content Editor (JCE) 1.1.0 beta 2 and earlier for Joomla!
HIGH
CVSS 7.5
CVE-2006-6051
PHP remote file inclusion vulnerability in reporter.logic.php in the MosReporter (com_reporter) component for Mambo and Joomla!
HIGH
CVSS 7.5
CVE-2006-5049
Unspecified vulnerability in Classifieds (com_classifieds) component 1.3 and earlier for Joomla!
HIGH
CVSS 7.5