Vulnérabilités
Joomla CMS et extensions — une fiche par CVE, toutes sources fusionnées.
CVE-2006-7123
Multiple SQL injection vulnerabilities in BSQ Sitestats (component for Joomla) 1.8.0, and possibly other versions before 2.2.1, allow remote attackers to execu…
HIGH
CVSS 7.5
CVE-2006-7122
Cross-site scripting (XSS) vulnerability in the IP Address Lookup functionality in BSQ Sitestats (component for Joomla) 1.8.0, and possibly other versions befo…
MEDIUM
CVSS 6.8
CVE-2006-7010
The mosgetparam implementation in Joomla!
HIGH
CVSS 7.5
CVE-2006-7009
Joomla! before 1.0.10 allows remote attackers to spoof the frontend submission forms, which has unknown impact and attack vectors.
HIGH
CVSS 7.5
CVE-2006-7008
Unspecified vulnerability in Joomla!
HIGH
CVSS 7.5
CVE-2006-6962
PHP remote file inclusion vulnerability in rsgallery2.html.php in the RS Gallery2 component (com_rsgallery2) 1.11.2 for Joomla!
MEDIUM
CVSS 6.8
CVE-2007-0387
SQL injection vulnerability in models/category.php in the Weblinks component for Joomla!
HIGH
CVSS 7.5
CVE-2007-0382
Multiple SQL injection vulnerabilities in letterman.class.php in the Letterman 1.2.3 (com_letterman) component for Joomla!
HIGH
CVSS 7.5
CVE-2007-0375
Joomla! 1.5.0 Beta allows remote attackers to obtain sensitive information via a direct request for (1) plugins/user/example.php; (2) gmail.php, (3) example.ph…
MEDIUM
CVSS 5.0
CVE-2007-0374
SQL injection vulnerability in (1) Joomla!
HIGH
CVSS 7.5
CVE-2007-0373
Multiple SQL injection vulnerabilities in Joomla!
MEDIUM
CVSS 6.8
CVE-2006-6843
PHP remote file inclusion vulnerability in the BE IT EasyPartner 0.0.9 beta component for Joomla!
HIGH
CVSS 7.5
CVE-2006-6834
Multiple unspecified vulnerabilities in Joomla!
MEDIUM
CVSS 6.8
CVE-2006-6833
com_categories in Joomla!
HIGH
CVSS 7.5
CVE-2006-6832
Cross-site scripting (XSS) vulnerability in Joomla!
MEDIUM
CVSS 4.3
CVE-2006-6420
Multiple cross-site scripting (XSS) vulnerabilities in jce.php in the JCE Admin Component in Ryan Demmer Joomla Content Editor (JCE) 1.1.0 beta 2 and earlier f…
MEDIUM
CVSS 6.8
CVE-2006-6419
jce.php in the JCE Admin Component in Ryan Demmer Joomla Content Editor (JCE) 1.1.0 beta 2 and earlier for Joomla!
HIGH
CVSS 7.5
CVE-2006-6166
Cross-site scripting (XSS) vulnerability in jce.php in the JCE Admin Component in Ryan Demmer Joomla Content Editor (JCE) 1.0.4 for Joomla!
MEDIUM
CVSS 6.8
CVE-2006-6051
PHP remote file inclusion vulnerability in reporter.logic.php in the MosReporter (com_reporter) component for Mambo and Joomla!
HIGH
CVSS 7.5
CVE-2006-5106
Cross-site scripting (XSS) vulnerability in FacileForms before 1.4.7 for Mambo and Joomla!, when either register_globals or RG_EMULATION is enabled, allows rem…
MEDIUM
CVSS 5.1