Vulnerability index

Browse CVEs

19 matching
Filters 2 Clear all
Severity

Filters apply as you choose them.

CRITICAL 9.1 CVE-2019-9918 An issue was discovered in the Harmis JE Messenger component 1.2.2 for Joomla!. Input does not get validated and queries are not written in a way to … Je Messenger Mitigation only Fix from $2,3002019-03-29 HIGH 8.8 CVE-2019-9920 An issue was discovered in the Harmis JE Messenger component 1.2.2 for Joomla!. It is possible to perform an action within the context of the account… Je Messenger Mitigation only Fix from $1,9502019-03-29 HIGH 7.5 CVE-2019-9922EPSS 11% An issue was discovered in the Harmis JE Messenger component 1.2.2 for Joomla!. Directory Traversal allows read access to arbitrary files. Je Messenger Mitigation only Fix from $1,9502019-03-29 MEDIUM 6.5 CVE-2019-9921 An issue was discovered in the Harmis JE Messenger component 1.2.2 for Joomla!. It is possible to read information that should only be accessible by … Je Messenger No fix yet Fix from $1,6002019-03-29 MEDIUM 5.4 CVE-2019-9919 An issue was discovered in the Harmis JE Messenger component 1.2.2 for Joomla!. It is possible to craft messages in a way that JavaScript gets execut… Je Messenger Mitigation only Fix from $1,6002019-03-29 HIGH 8.8 CVE-2018-12254 router.php in the Harmis Ek rishta (aka ek-rishta) 2.10 component for Joomla! allows SQL Injection via the PATH_INFO to a home/requested_user/Sent%20… Ek Rishta No fix yet Fix from $1,9502018-06-12 CRITICAL 9.8 CVE-2018-7315 SQL Injection exists in the Ek Rishta 2.9 component for Joomla! via the gender, age1, age2, religion, mothertounge, caste, or country parameter. Ek Rishta No fix yet Fix from $2,3002018-02-22 HIGH 7.5 CVE-2010-5028EPSS 9% SQL injection vulnerability in the JExtensions JE Job (com_jejob) component 1.0 for Joomla! allows remote attackers to execute arbitrary SQL commands… Com Jejob No fix yet Fix from $1,9502011-11-02 HIGH 7.5 CVE-2010-5022 SQL injection vulnerability in the JExtensions JE Story Submit (com_jesubmit) component 1.4 for Joomla! allows remote attackers to execute arbitrary … Com Jesubmit No fix yet Fix from $1,9502011-11-02 HIGH 7.5 CVE-2010-4862 SQL injection vulnerability in the JExtensions JE Directory (com_jedirectory) component 1.0 for Joomla! allows remote attackers to execute arbitrary … Com Jedirectory No fix yet Fix from $1,9502011-10-05 HIGH 7.5 CVE-2010-4865 SQL injection vulnerability in the JE Guestbook (com_jeguestbook) component 1.0 for Joomla! allows remote attackers to execute arbitrary SQL commands… Com Jeguestbook No fix yet Fix from $1,9502011-10-05 MEDIUM 6.8 CVE-2010-4517 SQL injection vulnerability in the JExtensions JE Auto (com_jeauto) component 1.0 for Joomla!, when magic_quotes_gpc is disabled, allows remote attac… Com Jeauto No fix yet Fix from $1,6002010-12-09 HIGH 7.5 CVE-2010-4365 SQL injection vulnerability in JE Ajax Event Calendar (com_jeajaxeventcalendar) component for Joomla! allows remote attackers to execute arbitrary SQ… Com Jeajaxeventcalendar No fix yet Fix from $1,9502010-12-01 MEDIUM 6.8 CVE-2010-2680 Directory traversal vulnerability in the JExtensions JE Section/Property Finder (jesectionfinder) component for Joomla! allows remote attackers to in… Com Jesectionfinder No fix yet Fix from $1,6002010-07-12 HIGH 7.5 CVE-2010-2513 SQL injection vulnerability in the JE Ajax Event Calendar (com_jeajaxeventcalendar) component 1.0.5 for Joomla! allows remote attackers to execute ar… Com Jeajaxeventcalendar No fix yet Fix from $1,9502010-06-28 HIGH 7.5 CVE-2010-2128EPSS 16% Directory traversal vulnerability in the JE Quotation Form (com_jequoteform) component 1.0b1 for Joomla! allows remote attackers to read arbitrary fi… Com Jequoteform No fix yet Fix from $1,9502010-06-01 MEDIUM 6.8 CVE-2010-2129 Directory traversal vulnerability in the JE Ajax Event Calendar (com_jeajaxeventcalendar) component 1.0.1 and 1.0.3 for Joomla! allows remote attacke… Com Jeajaxeventcalendar No fix yet Fix from $1,6002010-06-01 HIGH 7.5 CVE-2010-0795 SQL injection vulnerability in the JE Event Calendars (com_jeeventcalendar) component 1.0 for Joomla! allows remote attackers to execute arbitrary SQ… Com Jeeventcalendar No fix yet Fix from $1,9502010-03-02 HIGH 7.5 CVE-2010-0796 SQL injection vulnerability in the JE Quiz (com_jequizmanagement) component 1.b01 for Joomla! allows remote attackers to execute arbitrary SQL comman… Com Jeeventcalendar No fix yet Fix from $1,9502010-03-02