Vulnérabilités

Vulnérabilités

Joomla CMS et extensions — une fiche par CVE, toutes sources fusionnées.

750 résultats

CVE-2017-20267 Joomla! Component Calendar Planner 1.0.1 contains an SQL injection vulnerability that allows unauthenticated attackers to inject SQL commands through the categ… calendar_planner · 1 source · HIGH CVSS 8.8 CVE-2017-20266 Joomla SP Movie Database 1.3 contains an SQL injection vulnerability that allows unauthenticated attackers to execute arbitrary SQL queries by injecting malici… Extension Joomla — Joomshaper · 1 source · HIGH CVSS 8.8 CVE-2017-20265 Joomla! Component Flip Wall 8.0 contains an SQL injection vulnerability that allows unauthenticated attackers to execute arbitrary SQL queries by injecting mal… flip_wall · 1 source · HIGH CVSS 7.1 CVE-2017-20264 Joomla! Component Sponsor Wall 8.0 contains an SQL injection vulnerability that allows unauthenticated attackers to execute arbitrary SQL queries by injecting… sponsor_wall · 1 source · HIGH CVSS 7.1 CVE-2017-20263 Joomla! Component FocalPoint Pro/Free 1.2.3 contains an SQL injection vulnerability that allows unauthenticated attackers to execute arbitrary SQL queries by i… focalpoint · 1 source · HIGH CVSS 8.8 CVE-2017-20262 Joomla! Component Ajax Quiz 1.8 contains an SQL injection vulnerability that allows unauthenticated attackers to execute arbitrary SQL queries by injecting mal… ajax_quiz · 1 source · HIGH CVSS 8.8 CVE-2017-20261 Joomla! Component Bargain Product VM3 1.0 contains an SQL injection vulnerability that allows unauthenticated attackers to execute arbitrary SQL queries by inj… bargain_product_vm3 · 1 source · HIGH CVSS 8.8 CVE-2017-20260 Joomla! Component Price Alert 3.0.2 contains an SQL injection vulnerability that allows unauthenticated attackers to execute arbitrary SQL queries by injecting… price_alert · 1 source · HIGH CVSS 8.8 CVE-2017-20259 Joomla OSDownloads 1.7.4 contains an SQL injection vulnerability that allows unauthenticated attackers to execute arbitrary SQL queries by injecting malicious… osdownloads · 1 source · HIGH CVSS 8.8 CVE-2017-20258 Joomla! Component RPC Responsive Portfolio 1.6.1 contains an SQL injection vulnerability that allows unauthenticated attackers to execute arbitrary SQL queries… responsive_portfolio · 1 source · HIGH CVSS 8.8 CVE-2017-20257 Joomla! Component Quiz Deluxe 3.7.4 contains an SQL injection vulnerability that allows unauthenticated attackers to execute arbitrary SQL commands through the… quiz_deluxe · 1 source · HIGH CVSS 8.8 CVE-2017-20256 Joomla Survey Force Deluxe 3.2.4 contains an SQL injection vulnerability that allows unauthenticated attackers to execute arbitrary SQL queries by injecting ma… survey_force_deluxe · 1 source · HIGH CVSS 8.8 CVE-2017-20255 Joomla! Component JB Visa 1.0 contains an SQL injection vulnerability that allows unauthenticated attackers to execute arbitrary SQL queries by injecting malic… jb_visa · 1 source · HIGH CVSS 8.8 CVE-2017-20254 Joomla! Component User Bench 1.0 contains an SQL injection vulnerability that allows unauthenticated attackers to execute arbitrary SQL queries by injecting ma… user_bench · 1 source · HIGH CVSS 8.8 CVE-2017-20253 Joomla! Component My Projects 2.0 contains an SQL injection vulnerability that allows unauthenticated attackers to execute arbitrary SQL queries by injecting m… my_projects · 1 source · HIGH CVSS 8.8 CVE-2017-20252 Joomla NextGen Editor 2.1.0 contains an SQL injection vulnerability that allows unauthenticated attackers to execute arbitrary SQL commands through the plname… nextgen_editor · 1 source · HIGH CVSS 8.8 CVE-2019-25740 Joomla com_jsjobs 1.2.6 contains an arbitrary file deletion vulnerability that allows authenticated attackers to delete files by manipulating custom userfield… com_jsjobs · 1 source · HIGH CVSS 7.1 CVE-2018-25433 Joomla Component JE Photo Gallery 1.1 contains an SQL injection vulnerability that allows unauthenticated attackers to extract database information by injectin… com_jephotogallery · 1 source · HIGH CVSS 8.8 CVE-2018-25381 Joomla Responsive Portfolio 1.6.1 contains an SQL injection vulnerability that allows authenticated attackers to execute arbitrary SQL commands through multipl… Extension Joomla — Extro · 1 source · HIGH CVSS 7.1 CVE-2018-25380 Joomla Component eXtroForms 2.1.5 contains an SQL injection vulnerability that allows authenticated attackers to execute arbitrary SQL commands through the fil… Extension Joomla — Extro · 1 source · HIGH CVSS 7.1