Vulnérabilités

Vulnérabilités

Joomla CMS et extensions — une fiche par CVE, toutes sources fusionnées.

217 résultats

CVE-2011-4910 Cross-site scripting (XSS) vulnerability in Joomla! Joomla CMS · 1 source · MEDIUM CVSS 4.3 CVE-2011-4909 Multiple cross-site scripting (XSS) vulnerabilities in Joomla! Joomla CMS · 1 source · MEDIUM CVSS 4.3 CVE-2012-1117 Cross-site scripting (XSS) vulnerability in Joomla! Joomla CMS · 1 source · MEDIUM CVSS 4.3 CVE-2012-1612 Cross-site scripting (XSS) vulnerability in the update manager in Joomla! Joomla CMS · 1 source · MEDIUM CVSS 4.3 CVE-2012-1611 Joomla! 2.5.x before 2.5.4 does not properly check permissions, which allows attackers to obtain sensitive "administrative back end" information via unknown at… Joomla CMS · 1 source · MEDIUM CVSS 5.0 CVE-2012-0837 Joomla! 1.7.x before 1.7.5 and 2.5.x before 2.5.1 allows attackers to obtain the installation path via unspecified vectors related to "administrator." Joomla CMS · 1 source · MEDIUM CVSS 5.0 CVE-2012-0836 Unspecified vulnerability in Joomla! Joomla CMS · 1 source · MEDIUM CVSS 5.0 CVE-2012-0835 Unspecified vulnerability in Joomla! Joomla CMS · 1 source · MEDIUM CVSS 5.0 CVE-2012-0822 Cross-site scripting (XSS) vulnerability in Joomla! Joomla CMS · 1 source · MEDIUM CVSS 4.3 CVE-2012-0821 Unspecified vulnerability in Joomla! Joomla CMS · 1 source · MEDIUM CVSS 5.0 CVE-2012-0820 Cross-site scripting (XSS) vulnerability in Joomla! Joomla CMS · 1 source · MEDIUM CVSS 4.3 CVE-2012-0819 Unspecified vulnerability in Joomla! Joomla CMS · 1 source · MEDIUM CVSS 5.0 CVE-2012-3829 Joomla! 2.5.3 allows remote attackers to obtain the installation path via the Host HTTP Header. Joomla CMS · 1 source · MEDIUM CVSS 5.0 CVE-2012-3828 Cross-site scripting (XSS) vulnerability in Joomla! Joomla CMS · 1 source · MEDIUM CVSS 4.3 CVE-2012-2748 Unspecified vulnerability in Joomla! Joomla CMS · 1 source · MEDIUM CVSS 5.0 CVE-2011-4332 Joomla! vulnerable to Cross-site Scripting Joomla CMS · 3 sources · MEDIUM CVSS 4.3 CVE-2011-4321 The password reset functionality in Joomla! Joomla CMS · 1 source · MEDIUM CVSS 5.0 CVE-2011-3747 Joomla! 1.6.0 allows remote attackers to obtain sensitive information via a direct request to a .php file, which reveals the installation path in an error mess… Joomla CMS · 1 source · MEDIUM CVSS 5.0 CVE-2011-2892 Joomla! 1.6.x before 1.6.2 does not prevent page rendering inside a frame in a third-party HTML document, which makes it easier for remote attackers to conduct… Joomla CMS · 1 source · MEDIUM CVSS 4.3 CVE-2011-2891 Joomla! 1.6.x before 1.6.2 allows remote attackers to obtain sensitive information via an empty Itemid array parameter to index.php, which reveals the installa… Joomla CMS · 1 source · MEDIUM CVSS 5.0