Vulnérabilités
Joomla CMS et extensions — une fiche par CVE, toutes sources fusionnées.
CVE-2007-4503
SQL injection vulnerability in index.php in the Nice Talk component (com_nicetalk) 0.9.3 and earlier for Joomla!
HIGH
CVSS 7.5
CVE-2007-4502
SQL injection vulnerability in index.php in the BibTeX component (com_jombib) 1.3 and earlier for Joomla!
HIGH
CVSS 7.5
CVE-2007-4456
SQL injection vulnerability in index.php in the SimpleFAQ (com_simplefaq) 2.11 component for Mambo allows remote attackers to execute arbitrary SQL commands vi…
HIGH
CVSS 7.5
CVE-2007-4244
PHP remote file inclusion vulnerability in langset.php in J!
HIGH
CVSS 7.5
CVE-2007-4186
PHP remote file inclusion vulnerability in admin.tour_toto.php in the Tour de France Pool (com_tour_toto) 1.0.1 module for Joomla!
MEDIUM
CVSS 6.8
CVE-2007-4128
SQL injection vulnerability in index.php in the Firestorm Technologies GMaps (com_gmaps) 1.00 component for Joomla!
HIGH
CVSS 7.5
CVE-2007-4046
SQL injection vulnerability in index.php in the Pony Gallery (com_ponygallery) 1.5 and earlier component for Joomla!
HIGH
CVSS 7.5
CVE-2007-3932
uploadimg.php in the Expose RC35 and earlier (com_expose) component for Joomla!
HIGH
CVSS 7.5
CVE-2007-3249
Cross-site scripting (XSS) vulnerability in mod_lettermansubscribe.php in the Letterman Subscriber (mod_letterman) before 1.2.5 module for Joomla!
MEDIUM
CVSS 4.3
CVE-2007-3130
Multiple PHP remote file inclusion vulnerabilities in the OpenWiki (formerly JD-Wiki) component (com_jd-wiki) 1.0.2, and possibly earlier, for Joomla!
MEDIUM
CVSS 6.8
CVE-2007-2933
SQL injection vulnerability in index.php in the Phil-a-Form (com_philaform) 1.2.0.0 and earlier component for Joomla!
HIGH
CVSS 7.5
CVE-2007-2792
SQL injection vulnerability in the Yet another Newsletter Component (aka YaNC or com_yanc) component before 1.5 beta 3 for Mambo and Joomla!
HIGH
CVSS 7.5
CVE-2007-2319
PHP remote file inclusion vulnerability in the AutoStand 1.1 and earlier module for Joomla!
MEDIUM
CVSS 6.8
CVE-2007-2196
PHP remote file inclusion vulnerability in jambook.php in the Jambook (com_Jambook) 1.0 beta7 module for Mambo and Joomla!
MEDIUM
CVSS 6.8
CVE-2007-2144
PHP remote file inclusion vulnerability in includes/CAltInstaller.php in the JoomlaPack (com_jpack) 1.0.4a2 RE component for Joomla!
MEDIUM
CVSS 6.8
CVE-2007-2143
PHP remote file inclusion vulnerability in index.php in the Be2004-2 template for Joomla!
HIGH
CVSS 7.5
CVE-2007-2089
Multiple PHP remote file inclusion vulnerabilities in the Jx Development Article 1.1 and earlier component for Mambo and Joomla!
MEDIUM
CVSS 6.8
CVE-2007-2044
PHP remote file inclusion vulnerability in mod_weather.php in the Antonis Ventouris Weather module for Mambo and Joomla!
HIGH
CVSS 7.5
CVE-2007-2043
Multiple PHP remote file inclusion vulnerabilities in the Avant-Garde Solutions MOSMedia (com_mosmedia) 1.08 and earlier module for Mambo and Joomla!
HIGH
CVSS 7.5
CVE-2007-2005
Multiple PHP remote file inclusion vulnerabilities in the Taskhopper 1.1 component for Mambo and Joomla!
MEDIUM
CVSS 6.8