Vulnérabilités
Joomla CMS et extensions — une fiche par CVE, toutes sources fusionnées.
CVE-2018-17376
SQL Injection exists in the Reverse Auction Factory 4.3.8 component for Joomla!
CRITICAL
CVSS 9.8
CVE-2018-17375
SQL Injection exists in the Music Collection 3.0.3 component for Joomla!
CRITICAL
CVSS 9.8
CVE-2018-14592
The CWJoomla CW Article Attachments PRO extension before 2.0.7 and CW Article Attachments FREE extension before 1.0.6 for Joomla!
CRITICAL
CVSS 9.8
CVE-2018-17254
The JCK Editor component 6.4.4 for Joomla!
CRITICAL
CVSS 9.8
CVE-2017-18345
The Joomanager component through 2.0.0 for Joomla!
CRITICAL
CVSS 9.8
CVE-2018-7319
SQL Injection exists in the OS Property Real Estate 3.12.7 component for Joomla!
CRITICAL
CVSS 9.8
CVE-2018-7318
SQL Injection exists in the CheckList 1.1.1 component for Joomla!
CRITICAL
CVSS 9.8
CVE-2018-7316
Arbitrary File Upload exists in the Proclaim 9.1.1 component for Joomla!
CRITICAL
CVSS 9.8
CVE-2018-7315
SQL Injection exists in the Ek Rishta 2.9 component for Joomla!
CRITICAL
CVSS 9.8
CVE-2018-7314
SQL Injection exists in the PrayerCenter 3.0.2 component for Joomla!
CRITICAL
CVSS 9.8
CVE-2018-7312
SQL Injection exists in the Alexandria Book Library 3.1.2 component for Joomla!
CRITICAL
CVSS 9.8
CVE-2018-7313
SQL Injection exists in the CW Tags 2.0.6 component for Joomla!
CRITICAL
CVSS 9.8
CVE-2018-6024
SQL Injection exists in the Project Log 1.5.3 component for Joomla!
CRITICAL
CVSS 9.8
CVE-2018-7180
SQL Injection exists in the Saxum Astro 4.0.14 component for Joomla!
CRITICAL
CVSS 9.8
CVE-2018-7179
SQL Injection exists in the SquadManagement 1.0.3 component for Joomla!
CRITICAL
CVSS 9.8
CVE-2018-7178
SQL Injection exists in the Saxum Picker 3.2.10 component for Joomla!
CRITICAL
CVSS 9.8
CVE-2018-7177
SQL Injection exists in the Saxum Numerology 3.0.4 component for Joomla!
CRITICAL
CVSS 9.8
CVE-2018-6585
SQL Injection exists in the JTicketing 2.0.16 component for Joomla!
CRITICAL
CVSS 9.8
CVE-2018-6584
SQL Injection exists in the DT Register 3.2.7 component for Joomla!
CRITICAL
CVSS 9.8
CVE-2018-6583
SQL Injection exists in the Timetable Responsive Schedule 1.5 component for Joomla!
CRITICAL
CVSS 9.8