Vulnérabilités
Joomla CMS et extensions — une fiche par CVE, toutes sources fusionnées.
CVE-2009-4938
SQL injection vulnerability in the JVideo!
HIGH
CVSS 7.5
CVE-2010-2694
SQL injection vulnerability in the redSHOP Component (com_redshop) 1.0 for Joomla!
HIGH
CVSS 7.5
CVE-2010-2690
SQL injection vulnerability in the JOOFORGE Gamesbox (com_gamesbox) component 1.0.2, and possibly earlier, for Joomla!
HIGH
CVSS 7.5
CVE-2010-2682
Directory traversal vulnerability in the Realtyna Translator (com_realtyna) component 1.0.15 for Joomla!
HIGH
CVSS 7.5
CVE-2010-2681
PHP remote file inclusion vulnerability in the SEF404x (com_sef) component for Joomla!
HIGH
CVSS 7.5
CVE-2010-2680
Directory traversal vulnerability in the JExtensions JE Section/Property Finder (jesectionfinder) component for Joomla!
MEDIUM
CVSS 6.8
CVE-2010-2679
SQL injection vulnerability in the Weblinks (com_weblinks) component in Joomla!
HIGH
CVSS 7.5
CVE-2010-2678
SQL injection vulnerability in xmap (com_xmap) component for Joomla!
HIGH
CVSS 7.5
CVE-2010-2622
SQL injection vulnerability in the Joomanager component, possibly 1.1.1, for Joomla!
HIGH
CVSS 7.5
CVE-2010-2613
Cross-site scripting (XSS) vulnerability in the JExtensions JE Awd Song (com_awd_song) component for Joomla!
MEDIUM
CVSS 4.3
CVE-2010-1522
Multiple SQL injection vulnerabilities in the BookLibrary Basic (com_booklibrary) component 1.5.3 before 1.5.3_2010_06_20 for Joomla!
HIGH
CVSS 7.5
CVE-2010-2515
Multiple SQL injection vulnerabilities in index.php in the JFaq (com_jfaq) component 1.2 for Joomla!, when magic_quotes_gpc is disabled, allow (1) remote attac…
MEDIUM
CVSS 6.8
CVE-2010-2514
Cross-site scripting (XSS) vulnerability in the JFaq (com_jfaq) component 1.2 for Joomla!
MEDIUM
CVSS 4.3
CVE-2010-2513
SQL injection vulnerability in the JE Ajax Event Calendar (com_jeajaxeventcalendar) component 1.0.5 for Joomla!
HIGH
CVSS 7.5
CVE-2010-2507
Directory traversal vulnerability in the Picasa2Gallery (com_picasa2gallery) component 1.2.8 and earlier for Joomla!
MEDIUM
CVSS 6.8
CVE-2010-2464
Multiple cross-site scripting (XSS) vulnerabilities in the RSComments (com_rscomments) component 1.0.0 Rev 2 for Joomla!
MEDIUM
CVSS 4.3
CVE-2010-2259
Directory traversal vulnerability in the BF Survey (com_bfsurvey) component for Joomla!
HIGH
CVSS 7.5
CVE-2010-2255
SQL injection vulnerability in the BF Survey Pro (com_bfsurvey_pro) component before 1.3.1, BF Survey Pro Free (com_bfsurvey_profree) component 1.2.6, and BF S…
HIGH
CVSS 7.5
CVE-2010-2254
SQL injection vulnerability in the Shape5 Bridge of Hope template for Joomla!
HIGH
CVSS 7.5
CVE-2010-1649
Joomla! vulnerable to Cross-site Scripting
MEDIUM
CVSS 4.3