Vulnérabilités

Vulnérabilités

Joomla CMS et extensions — une fiche par CVE, toutes sources fusionnées.

1626 résultats

CVE-2007-3249 Cross-site scripting (XSS) vulnerability in mod_lettermansubscribe.php in the Letterman Subscriber (mod_letterman) before 1.2.5 module for Joomla! mod_lettermansubscribe · 1 source · MEDIUM CVSS 4.3 CVE-2007-3130 Multiple PHP remote file inclusion vulnerabilities in the OpenWiki (formerly JD-Wiki) component (com_jd-wiki) 1.0.2, and possibly earlier, for Joomla! com_jd · 1 source · MEDIUM CVSS 6.8 CVE-2007-2933 SQL injection vulnerability in index.php in the Phil-a-Form (com_philaform) 1.2.0.0 and earlier component for Joomla! com_philaform · 1 source · HIGH CVSS 7.5 CVE-2007-2792 SQL injection vulnerability in the Yet another Newsletter Component (aka YaNC or com_yanc) component before 1.5 beta 3 for Mambo and Joomla! com_yanc · 1 source · HIGH CVSS 7.5 CVE-2007-2319 PHP remote file inclusion vulnerability in the AutoStand 1.1 and earlier module for Joomla! mod_as_category · 1 source · MEDIUM CVSS 6.8 CVE-2007-2199 PHP remote file inclusion vulnerability in lib/pcltar.lib.php (aka pcltar.php) in the PclTar module 1.3 and 1.3.1 for Vincent Blavet PhpConcept Library, as use… Joomla CMS · 1 source · MEDIUM CVSS 6.8 CVE-2007-2196 PHP remote file inclusion vulnerability in jambook.php in the Jambook (com_Jambook) 1.0 beta7 module for Mambo and Joomla! com_Jambook · 1 source · MEDIUM CVSS 6.8 CVE-2007-2144 PHP remote file inclusion vulnerability in includes/CAltInstaller.php in the JoomlaPack (com_jpack) 1.0.4a2 RE component for Joomla! com_jpack · 1 source · MEDIUM CVSS 6.8 CVE-2007-2143 PHP remote file inclusion vulnerability in index.php in the Be2004-2 template for Joomla! Be2004-2 (identification probable) · 1 source · HIGH CVSS 7.5 CVE-2007-2089 Multiple PHP remote file inclusion vulnerabilities in the Jx Development Article 1.1 and earlier component for Mambo and Joomla! com_articles · 1 source · MEDIUM CVSS 6.8 CVE-2007-2044 PHP remote file inclusion vulnerability in mod_weather.php in the Antonis Ventouris Weather module for Mambo and Joomla! mod_weather · 1 source · HIGH CVSS 7.5 CVE-2007-2043 Multiple PHP remote file inclusion vulnerabilities in the Avant-Garde Solutions MOSMedia (com_mosmedia) 1.08 and earlier module for Mambo and Joomla! com_mosmedia · 1 source · HIGH CVSS 7.5 CVE-2007-2005 Multiple PHP remote file inclusion vulnerabilities in the Taskhopper 1.1 component for Mambo and Joomla! Extension Joomla (identification incertaine) · 1 source · MEDIUM CVSS 6.8 CVE-2007-1776 SQL injection vulnerability in index.php in the DesignForJoomla.com D4J eZine (com_ezine) 2.8 and earlier component for Joomla! com_ezine · 1 source · MEDIUM CVSS 6.8 CVE-2007-1704 SQL injection vulnerability in index.php in the Car Manager (com_resman) 1.1 and earlier component for Joomla! com_resman · 1 source · HIGH CVSS 7.5 CVE-2007-1703 SQL injection vulnerability in index.php in the RWCards (com_rwcards) 2.4.3 and earlier component for Joomla! com_rwcards · 1 source · HIGH CVSS 7.5 CVE-2007-1699 Multiple PHP remote file inclusion vulnerabilities in the SWmenu (com_swmenupro and com_swmenufree) 4.0 component for Mambo and Joomla! com_swmenupro · 1 source · HIGH CVSS 10.0 CVE-2007-1596 Multiple PHP remote file inclusion vulnerabilities in the NFN Address Book (com_nfn_addressbook) 0.4 component for Mambo and Joomla! com_nfn_addressbook · 1 source · HIGH CVSS 9.3 CVE-2006-7125 Cross-site scripting (XSS) vulnerability in Joomla BSQ Sitestats 1.8.0 and 2.2.1 allows remote attackers to inject arbitrary web script or HTML via the HTTP Re… Extension Joomla (identification incertaine) · 1 source · MEDIUM CVSS 6.8 CVE-2006-7124 PHP remote file inclusion vulnerability in external/rssfeeds.php in BSQ Sitestats (component for Joomla) 1.8.0, and possibly other versions before 2.2.1, allow… Extension Joomla (identification incertaine) · 1 source · HIGH CVSS 7.5