Vulnerability index

Browse CVEs

195 matching
Filters 2 Clear all
Severity

Filters apply as you choose them.

MEDIUM 6.8 CVE-2009-1280 Multiple cross-site request forgery (CSRF) vulnerabilities in the com_media component for Joomla! 1.5.x through 1.5.9 allow remote attackers to hijac… Joomla Mitigation only Fix from $1,6002009-04-09 HIGH 7.5 CVE-2008-6430 SQL injection vulnerability in the MyContent (com_mycontent) component 1.1.13 for Joomla! allows remote attackers to execute arbitrary SQL commands v… Com Mycontent No fix yet Fix from $1,9502009-03-06 HIGH 7.5 CVE-2008-6234 SQL injection vulnerability in the com_musica module in Joomla! and Mambo allows remote attackers to execute arbitrary SQL commands via the id parame… Com Musica No fix yet Fix from $1,9502009-02-21 HIGH 7.5 CVE-2008-6182 SQL injection vulnerability in the Ignite Gallery (com_ignitegallery) component 0.8.0 through 0.8.3 for Joomla! allows remote attackers to execute ar… Ignitegallery No fix yet Fix from $1,9502009-02-19 HIGH 7.5 CVE-2009-0421 SQL injection vulnerability in the Eventing (com_eventing) 1.6.x component for Joomla! allows remote attackers to execute arbitrary SQL commands via … Com Eventing No fix yet Fix from $1,9502009-02-05 HIGH 7.5 CVE-2009-0377 SQL injection vulnerability in the beamospetition (com_beamospetition) 1.0.12 component for Joomla! allows remote attackers to execute arbitrary SQL … Com Beamospetition No fix yet Fix from $1,9502009-02-02 HIGH 7.5 CVE-2009-0379 SQL injection vulnerability in the Prince Clan Chess Club (com_pcchess) component for Joomla! allows remote attackers to execute arbitrary SQL comman… Com Pcchess No fix yet Fix from $1,9502009-02-02 HIGH 7.5 CVE-2009-0329 SQL injection vulnerability in the PcCookBook (com_pccookbook) component for Joomla! allows remote attackers to execute arbitrary SQL commands via th… Com Pccookbook No fix yet Fix from $1,9502009-01-29 HIGH 7.5 CVE-2009-0333 SQL injection vulnerability in the WebAmoeba (WA) Ticket System (com_waticketsystem) component for Joomla! allows remote attackers to execute arbitra… Com Waticketsystem No fix yet Fix from $1,9502009-01-29 MEDIUM 5.0 CVE-2009-0113EPSS 7% Directory traversal vulnerability in attachmentlibrary.php in the XStandard component for Joomla! 1.5.8 and earlier allows remote attackers to list a… Xstandard No fix yet Fix from $1,6002009-01-09 HIGH 7.5 CVE-2008-5811 SQL injection vulnerability in the PaxGallery (com_paxgallery) component 0.1 for Joomla! allows remote attackers to execute arbitrary SQL commands vi… Com Paxgallery No fix yet Fix from $1,9502009-01-02 HIGH 7.5 CVE-2008-4122 Joomla! 1.5.8 does not set the secure flag for the session cookie in an https session, which makes it easier for remote attackers to capture this coo… Joomla\! Mitigation only Fix from $1,9502008-12-19 HIGH 7.5 CVE-2008-5643 SQL injection vulnerability in the Books (com_books) component for Joomla! allows remote attackers to execute arbitrary SQL commands via the book_id … Com Books No fix yet Fix from $1,9502008-12-17 HIGH 7.5 CVE-2008-5208 SQL injection vulnerability in sub_votepic.php in the Datsogallery (com_datsogallery) module 1.6 for Joomla! allows remote attackers to execute arbit… Com Datsogallery No fix yet Fix from $1,9502008-11-24 HIGH 7.5 CVE-2008-5200 SQL injection vulnerability in the Xe webtv (com_xewebtv) component for Joomla! allows remote attackers to execute arbitrary SQL commands via the id … Com Xewebtv No fix yet Fix from $1,9502008-11-21 HIGH 10.0 CVE-2008-5053EPSS 63% PHP remote file inclusion vulnerability in admin.rssreader.php in the Simple RSS Reader (com_rssreader) 1.0 component for Joomla! allows remote attac… Com Rssreader No fix yet Fix from $1,9502008-11-13 HIGH 9.0 CVE-2008-4668EPSS 21% Directory traversal vulnerability in the Image Browser (com_imagebrowser) 0.1.5 component for Joomla! allows remote attackers to include and execute … Com Imagebrowser No fix yet Fix from $1,9502008-10-22 HIGH 7.5 CVE-2008-4102 Joomla! 1.5 before 1.5.7 initializes PHP's PRNG with a weak seed, which makes it easier for attackers to guess the pseudo-random values produced by P… Joomla Mitigation only Fix from $1,9502008-09-18 HIGH 7.5 CVE-2008-4105 JRequest in Joomla! 1.5 before 1.5.7 does not sanitize variables that were set with JRequest::setVar, which allows remote attackers to conduct "varia… Joomla Mitigation only Fix from $1,9502008-09-18 MEDIUM 5.8 CVE-2008-4104 Multiple open redirect vulnerabilities in Joomla! 1.5 before 1.5.7 allow remote attackers to redirect users to arbitrary web sites and conduct phishi… Joomla Mitigation only Fix from $1,6002008-09-18 MEDIUM 5.0 CVE-2008-4103 The mailto (aka com_mailto) component in Joomla! 1.5 before 1.5.7 sends e-mail messages without validating the URL, which allows remote attackers to … Com Mailto Mitigation only Fix from $1,6002008-09-18 HIGH 7.5 CVE-2008-3681EPSS 9% components/com_user/models/reset.php in Joomla! 1.5 through 1.5.5 does not properly validate reset tokens, which allows remote attackers to reset the… Com User No fix yet Fix from $1,9502008-08-14 HIGH 7.5 CVE-2008-3586 SQL injection vulnerability in the EZ Store (com_ezstore) component for Joomla! allows remote attackers to execute arbitrary SQL commands via the id … Com Ezstore No fix yet Fix from $1,9502008-08-11 MEDIUM 6.8 CVE-2008-3265 SQL injection vulnerability in the DT Register (com_dtregister) 2.2.3 component for Joomla! allows remote attackers to execute arbitrary SQL commands… Com Dtregister No fix yet Fix from $1,6002008-07-24 HIGH 7.5 CVE-2008-3132 SQL injection vulnerability in the beamospetition (com_beamospetition) component for Joomla! allows remote attackers to execute arbitrary SQL command… Com Beamospetition No fix yet Fix from $1,9502008-07-10 HIGH 7.5 CVE-2008-3083 SQL injection vulnerability in Brightcode Weblinks (com_brightweblinks) component for Joomla! allows remote attackers to execute arbitrary SQL comman… Com Brightweblinks No fix yet Fix from $1,9502008-07-09 HIGH 7.5 CVE-2008-2990 PHP remote file inclusion vulnerability in facileforms.frame.php in the FacileForms (com_facileforms) component 1.4.4 for Mambo and Joomla! allows re… Com Facileforms No fix yet Fix from $1,9502008-07-02 HIGH 7.5 CVE-2008-2892 SQL injection vulnerability in the EXP Shop (com_expshop) component 1.0 for Joomla! allows remote attackers to execute arbitrary SQL commands via the… Com Expshop No fix yet Fix from $1,9502008-06-27 HIGH 7.5 CVE-2008-2692 SQL injection vulnerability in the yvComment (com_yvcomment) component 1.16.0 and earlier for Joomla! allows remote attackers to execute arbitrary SQ… Com Yvcomment No fix yet Fix from $1,9502008-06-13 HIGH 7.5 CVE-2008-2697 SQL injection vulnerability in the Rapid Recipe (com_rapidrecipe) component 1.6.6 and 1.6.7 for Joomla! allows remote attackers to execute arbitrary … Com Rapidrecipe No fix yet Fix from $1,9502008-06-13