Vulnérabilités
Joomla CMS et extensions — une fiche par CVE, toutes sources fusionnées.
CVE-2011-5112
SQL injection vulnerability in Alameda (com_alameda) component before 1.0.1 for Joomla!
HIGH
CVSS 7.5
CVE-2011-5099
SQL injection vulnerability in helper/popup.php in the ccNewsletter (mod_ccnewsletter) component 1.0.7 through 1.0.9 for Joomla!
HIGH
CVSS 7.5
CVE-2012-4256
The jNews (com_jnews) component 7.5.1 for Joomla!
MEDIUM
CVSS 5.0
CVE-2012-4235
The RSGallery2 (com_rsgallery2) component before 3.2.0 for Joomla!
MEDIUM
CVSS 5.0
CVE-2012-4071
Cross-site scripting (XSS) vulnerability in the comments module in the RSGallery2 (com_rsgallery2) component before 2.3.0 for Joomla!
MEDIUM
CVSS 4.3
CVE-2012-3554
SQL injection vulnerability in the RSGallery2 (com_rsgallery2) component before 2.3.0 for Joomla!
HIGH
CVSS 7.5
CVE-2012-3829
Joomla! 2.5.3 allows remote attackers to obtain the installation path via the Host HTTP Header.
MEDIUM
CVSS 5.0
CVE-2012-3828
Cross-site scripting (XSS) vulnerability in Joomla!
MEDIUM
CVSS 4.3
CVE-2012-2748
Unspecified vulnerability in Joomla!
MEDIUM
CVSS 5.0
CVE-2012-2747
Unspecified vulnerability in Joomla!
HIGH
CVSS 7.5
CVE-2012-2902
Unrestricted file upload vulnerability in editor/extensions/browser/file.php in the Joomla Content Editor (JCE) component before 2.1 for Joomla!, when chunking…
MEDIUM
CVSS 6.0
CVE-2012-2901
Cross-site scripting (XSS) vulnerability in the Profile List in the Joomla Content Editor (JCE) component before 2.1 for Joomla!
MEDIUM
CVSS 4.3
CVE-2012-1018
Cross-site scripting (XSS) vulnerability in includes/convert.php in D-Mack Media Currency Converter (mod_currencyconverter) module 1.0.0 for Joomla!
MEDIUM
CVSS 4.3
CVE-2011-5004
Unrestricted file upload vulnerability in models/importcsv.php in the Fabrik (com_fabrik) component before 2.1.1 for Joomla!
MEDIUM
CVSS 6.0
CVE-2011-4830
Multiple cross-site scripting (XSS) vulnerabilities in the com_listing component in Barter Sites component 1.3 for Joomla!
LOW
CVSS 3.5
CVE-2011-4829
SQL injection vulnerability in the com_listing component in Barter Sites component 1.3 for Joomla!
HIGH
CVSS 7.5
CVE-2011-4823
Multiple SQL injection vulnerabilities in Vik Real Estate (com_vikrealestate) component 1.0 for Joomla!
HIGH
CVSS 7.5
CVE-2011-4809
Multiple cross-site scripting (XSS) vulnerabilities in the HM Community (com_hmcommunity) component before 1.01 for Joomla!
MEDIUM
CVSS 4.3
CVE-2011-4808
SQL injection vulnerability in the HM Community (com_hmcommunity) component before 1.01 for Joomla!
HIGH
CVSS 7.5
CVE-2011-4804
Directory traversal vulnerability in the obSuggest (com_obsuggest) component before 1.8 for Joomla!
MEDIUM
CVSS 5.0