Vulnerability index

Browse CVEs

195 matching
Filters 2 Clear all
Severity

Filters apply as you choose them.

Joomla HIGH 7.5
CVE-2007-6272

Multiple SQL injection vulnerabilities in index.php in Joomla! 1.5 RC3 allow remote attackers to execute arbitrary SQL commands via (1) the view para…

No fix yet
Fix from $1,950 2007-12-07
Joomla MEDIUM 6.8
CVE-2007-5457EPSS 38%

Multiple PHP remote file inclusion vulnerabilities in Michael Dempfle Joomla Flash Uploader (com_jfu or com_joomla_flash_uploader) 2.5.1 component fo…

No fix yet
Fix from $1,600 2007-10-14
Joomla MEDIUM 6.8
CVE-2007-5451EPSS 31%

PHP remote file inclusion vulnerability in admin.color.php in the com_colorlab (aka com_color) 1.0 component for Joomla! allows remote attackers to e…

No fix yet
Fix from $1,600 2007-10-14
Joomla MEDIUM 6.8
CVE-2007-5410EPSS 5%

PHP remote file inclusion vulnerability in admin.wmtrssreader.php in the webmaster-tips.net Flash RSS Reader (com_wmtrssreader) 1.0 component for Joo…

No fix yet
Fix from $1,600 2007-10-12
Joomla MEDIUM 6.8
CVE-2007-5389

PHP remote file inclusion vulnerability in preview.php in the swMenuFree (com_swmenufree) 4.6 component for Joomla! allows remote attackers to execut…

Mitigation only
Fix from $1,600 2007-10-12
Joomla MEDIUM 6.8
CVE-2007-5362EPSS 37%

Multiple PHP remote file inclusion vulnerabilities in the Avant-Garde Solutions MOSMedia Lite (com_mosmedia) 4.5.1 component for Mambo and Joomla! al…

No fix yet
Fix from $1,600 2007-10-11
Joomla MEDIUM 6.8
CVE-2007-5363EPSS 31%

PHP remote file inclusion vulnerability in admin.panoramic.php in the Panoramic Picture Viewer (com_panoramic) mambot (plugin) 1.0 for Joomla! allows…

No fix yet
Fix from $1,600 2007-10-11
Joomla MEDIUM 6.8
CVE-2007-5309EPSS 6%

PHP remote file inclusion vulnerability in admin.wmtgallery.php in the webmaster-tips.net Flash Image Gallery (com_wmtgallery) 1.0 component for Joom…

No fix yet
Fix from $1,600 2007-10-09
Joomla MEDIUM 6.8
CVE-2007-5310

PHP remote file inclusion vulnerability in admin.wmtportfolio.php in the webmaster-tips.net wmtportfolio 1.0 (com_wmtportfolio) component for Joomla!…

No fix yet
Fix from $1,600 2007-10-09
Joomla HIGH 7.5
CVE-2007-5065EPSS 42%

PHP remote file inclusion vulnerability in admin.slideshow1.php in the Flash Slide Show (com_slideshow) component for Joomla! allows remote attackers…

No fix yet
Fix from $1,950 2007-09-24
Joom12pic Component MEDIUM 6.8
CVE-2007-4954EPSS 29%

PHP remote file inclusion vulnerability in admin.joom12pic.php in the joom12Pic (com_joom12pic) 1.0 component for Joomla! allows remote attackers to …

No fix yet
Fix from $1,600 2007-09-18
Flash Fun Component MEDIUM 6.8
CVE-2007-4955EPSS 30%

PHP remote file inclusion vulnerability in admin.joomlaflashfun.php in the Flash Fun! (com_joomlaflashfun) 1.0 component for Joomla! allows remote at…

No fix yet
Fix from $1,600 2007-09-18
Joomla Radio MEDIUM 6.8
CVE-2007-4923EPSS 42%

PHP remote file inclusion vulnerability in admin.joomlaradiov5.php in the Joomla Radio 5 (com_joomlaradiov5) component for Joomla! allows remote atta…

No fix yet
Fix from $1,600 2007-09-17
Joomla HIGH 7.5
CVE-2007-4184

SQL injection vulnerability in administrator/popups/pollwindow.php in Joomla! 1.0.12 allows remote attackers to execute arbitrary SQL commands via th…

Mitigation only
Fix from $1,950 2007-08-08
Joomla HIGH 7.5
CVE-2007-4187EPSS 11%

Multiple eval injection vulnerabilities in the com_search component in Joomla! 1.5 beta before RC1 (aka Mapya) allow remote attackers to execute arbi…

Mitigation only
Fix from $1,950 2007-08-08
Tour De France Pool MEDIUM 6.8
CVE-2007-4186EPSS 6%

PHP remote file inclusion vulnerability in admin.tour_toto.php in the Tour de France Pool (com_tour_toto) 1.0.1 module for Joomla! allows remote atta…

No fix yet
Fix from $1,600 2007-08-08
Joomla MEDIUM 5.0
CVE-2007-4185

Joomla! 1.0.12 allows remote attackers to obtain sensitive information via a direct request for (1) Stat.php (2) OutputFilter.php, (3) OutputCache.ph…

Mitigation only
Fix from $1,600 2007-08-08
Expose HIGH 7.5
CVE-2007-3932EPSS 6%

uploadimg.php in the Expose RC35 and earlier (com_expose) component for Joomla! sends an error message but does not exit when it detects an attempt t…

No fix yet
Fix from $1,950 2007-07-21
Jd Wiki MEDIUM 6.8
CVE-2007-3130

Multiple PHP remote file inclusion vulnerabilities in the OpenWiki (formerly JD-Wiki) component (com_jd-wiki) 1.0.2, and possibly earlier, for Joomla…

No fix yet
Fix from $1,600 2007-06-08
Joomla MEDIUM 6.8
CVE-2007-2199EPSS 47%

PHP remote file inclusion vulnerability in lib/pcltar.lib.php (aka pcltar.php) in the PclTar module 1.3 and 1.3.1 for Vincent Blavet PhpConcept Libra…

No fix yet
Fix from $1,600 2007-04-24
Jambook MEDIUM 6.8
CVE-2007-2196

PHP remote file inclusion vulnerability in jambook.php in the Jambook (com_Jambook) 1.0 beta7 module for Mambo and Joomla! allows remote attackers to…

Mitigation only
Fix from $1,600 2007-04-24
Taskhopper Component MEDIUM 6.8
CVE-2007-2005EPSS 7%

Multiple PHP remote file inclusion vulnerabilities in the Taskhopper 1.1 component for Mambo and Joomla! allow remote attackers to execute arbitrary …

No fix yet
Fix from $1,600 2007-04-12
Swmenu Component HIGH 10.0
CVE-2007-1699EPSS 11%

Multiple PHP remote file inclusion vulnerabilities in the SWmenu (com_swmenupro and com_swmenufree) 4.0 component for Mambo and Joomla! allow remote …

No fix yet
Fix from $1,950 2007-03-27
Nfn Address Book HIGH 9.3
CVE-2007-1596EPSS 8%

Multiple PHP remote file inclusion vulnerabilities in the NFN Address Book (com_nfn_addressbook) 0.4 component for Mambo and Joomla! allow remote att…

No fix yet
Fix from $1,950 2007-03-22
Bsq Sitestats HIGH 7.5
CVE-2006-7123

Multiple SQL injection vulnerabilities in BSQ Sitestats (component for Joomla) 1.8.0, and possibly other versions before 2.2.1, allow remote attacker…

Mitigation only
Fix from $1,950 2007-03-06
Rs Gallery2 MEDIUM 6.8
CVE-2006-6962

PHP remote file inclusion vulnerability in rsgallery2.html.php in the RS Gallery2 component (com_rsgallery2) 1.11.2 for Joomla! allows attackers to e…

No fix yet
Fix from $1,600 2007-01-29
Joomla HIGH 7.5
CVE-2007-0387

SQL injection vulnerability in models/category.php in the Weblinks component for Joomla! SVN 20070118 (com_weblinks) allows remote attackers to execu…

Mitigation only
Fix from $1,950 2007-01-19
Joomla MEDIUM 6.8
CVE-2007-0373EPSS 12%

Multiple SQL injection vulnerabilities in Joomla! 1.5.0 Beta allow remote attackers to execute arbitrary SQL commands via (1) the searchword paramete…

No fix yet
Fix from $1,600 2007-01-19
Joomla MEDIUM 5.0
CVE-2007-0375

Joomla! 1.5.0 Beta allows remote attackers to obtain sensitive information via a direct request for (1) plugins/user/example.php; (2) gmail.php, (3) …

No fix yet
Fix from $1,600 2007-01-19
Be It Easypartner Component HIGH 7.5
CVE-2006-6843

PHP remote file inclusion vulnerability in the BE IT EasyPartner 0.0.9 beta component for Joomla! allows remote attackers to execute arbitrary PHP co…

Mitigation only
Fix from $1,950 2006-12-31