Vulnérabilités

Vulnérabilités

Joomla CMS et extensions — une fiche par CVE, toutes sources fusionnées.

1626 résultats

CVE-2006-7123 Multiple SQL injection vulnerabilities in BSQ Sitestats (component for Joomla) 1.8.0, and possibly other versions before 2.2.1, allow remote attackers to execu… Extension Joomla (identification incertaine) · 1 source · HIGH CVSS 7.5 CVE-2006-7122 Cross-site scripting (XSS) vulnerability in the IP Address Lookup functionality in BSQ Sitestats (component for Joomla) 1.8.0, and possibly other versions befo… Extension Joomla (identification incertaine) · 1 source · MEDIUM CVSS 6.8 CVE-2006-7010 The mosgetparam implementation in Joomla! Joomla CMS · 1 source · HIGH CVSS 7.5 CVE-2006-7009 Joomla! before 1.0.10 allows remote attackers to spoof the frontend submission forms, which has unknown impact and attack vectors. Joomla CMS · 1 source · HIGH CVSS 7.5 CVE-2006-7008 Unspecified vulnerability in Joomla! Joomla CMS · 1 source · HIGH CVSS 7.5 CVE-2006-6962 PHP remote file inclusion vulnerability in rsgallery2.html.php in the RS Gallery2 component (com_rsgallery2) 1.11.2 for Joomla! com_rsgallery2 · 1 source · MEDIUM CVSS 6.8 CVE-2007-0387 SQL injection vulnerability in models/category.php in the Weblinks component for Joomla! Joomla CMS · 1 source · HIGH CVSS 7.5 CVE-2007-0382 Multiple SQL injection vulnerabilities in letterman.class.php in the Letterman 1.2.3 (com_letterman) component for Joomla! com_letterman · 1 source · HIGH CVSS 7.5 CVE-2007-0375 Joomla! 1.5.0 Beta allows remote attackers to obtain sensitive information via a direct request for (1) plugins/user/example.php; (2) gmail.php, (3) example.ph… Joomla CMS · 1 source · MEDIUM CVSS 5.0 CVE-2007-0374 SQL injection vulnerability in (1) Joomla! Joomla CMS · 1 source · HIGH CVSS 7.5 CVE-2007-0373 Multiple SQL injection vulnerabilities in Joomla! Joomla CMS · 1 source · MEDIUM CVSS 6.8 CVE-2006-6843 PHP remote file inclusion vulnerability in the BE IT EasyPartner 0.0.9 beta component for Joomla! Extension Joomla (identification incertaine) · 1 source · HIGH CVSS 7.5 CVE-2006-6834 Multiple unspecified vulnerabilities in Joomla! Joomla CMS · 1 source · MEDIUM CVSS 6.8 CVE-2006-6833 com_categories in Joomla! Joomla CMS · 1 source · HIGH CVSS 7.5 CVE-2006-6832 Cross-site scripting (XSS) vulnerability in Joomla! Joomla CMS · 1 source · MEDIUM CVSS 4.3 CVE-2006-6420 Multiple cross-site scripting (XSS) vulnerabilities in jce.php in the JCE Admin Component in Ryan Demmer Joomla Content Editor (JCE) 1.1.0 beta 2 and earlier f… com_jce · 1 source · MEDIUM CVSS 6.8 CVE-2006-6419 jce.php in the JCE Admin Component in Ryan Demmer Joomla Content Editor (JCE) 1.1.0 beta 2 and earlier for Joomla! com_jce · 1 source · HIGH CVSS 7.5 CVE-2006-6166 Cross-site scripting (XSS) vulnerability in jce.php in the JCE Admin Component in Ryan Demmer Joomla Content Editor (JCE) 1.0.4 for Joomla! com_jce · 1 source · MEDIUM CVSS 6.8 CVE-2006-6051 PHP remote file inclusion vulnerability in reporter.logic.php in the MosReporter (com_reporter) component for Mambo and Joomla! com_reporter · 1 source · HIGH CVSS 7.5 CVE-2006-5106 Cross-site scripting (XSS) vulnerability in FacileForms before 1.4.7 for Mambo and Joomla!, when either register_globals or RG_EMULATION is enabled, allows rem… Extension Joomla (identification incertaine) · 1 source · MEDIUM CVSS 5.1