Vulnerability index

Browse CVEs

480 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Joomla HIGH 7.5
CVE-2006-7008

Unspecified vulnerability in Joomla! before 1.0.10 has unknown impact and attack vectors, related to "securing mosmsg from misuse." NOTE: it is possi…

Patch available
Fix from $1,950 2007-02-12
Joomla HIGH 7.5
CVE-2006-7009

Joomla! before 1.0.10 allows remote attackers to spoof the frontend submission forms, which has unknown impact and attack vectors.

Patch available
Fix from $1,950 2007-02-12
Joomla HIGH 7.5
CVE-2006-7010

The mosgetparam implementation in Joomla! before 1.0.10, does not set a variable's data type to integer when the variable's default value is numeric,…

Patch available
Fix from $1,950 2007-02-12
Rs Gallery2 MEDIUM 6.8
CVE-2006-6962

PHP remote file inclusion vulnerability in rsgallery2.html.php in the RS Gallery2 component (com_rsgallery2) 1.11.2 for Joomla! allows attackers to e…

No fix yet
Fix from $1,600 2007-01-29
Joomla HIGH 7.5
CVE-2007-0374

SQL injection vulnerability in (1) Joomla! 1.0.11 and 1.5 Beta, and (2) Mambo 4.6.1, allows remote attackers to execute arbitrary SQL commands via th…

Patch available
Fix from $1,950 2007-01-19
Joomla HIGH 7.5
CVE-2007-0387

SQL injection vulnerability in models/category.php in the Weblinks component for Joomla! SVN 20070118 (com_weblinks) allows remote attackers to execu…

Mitigation only
Fix from $1,950 2007-01-19
Joomla MEDIUM 6.8
CVE-2007-0373EPSS 12%

Multiple SQL injection vulnerabilities in Joomla! 1.5.0 Beta allow remote attackers to execute arbitrary SQL commands via (1) the searchword paramete…

No fix yet
Fix from $1,600 2007-01-19
Joomla MEDIUM 5.0
CVE-2007-0375

Joomla! 1.5.0 Beta allows remote attackers to obtain sensitive information via a direct request for (1) plugins/user/example.php; (2) gmail.php, (3) …

No fix yet
Fix from $1,600 2007-01-19
Joomla HIGH 7.5
CVE-2006-6833

com_categories in Joomla! before 1.0.12 does not validate input, which has unknown impact and remote attack vectors.

Patch available
Fix from $1,950 2006-12-31
Be It Easypartner Component HIGH 7.5
CVE-2006-6843

PHP remote file inclusion vulnerability in the BE IT EasyPartner 0.0.9 beta component for Joomla! allows remote attackers to execute arbitrary PHP co…

Mitigation only
Fix from $1,950 2006-12-31
Joomla MEDIUM 6.8
CVE-2006-6834

Multiple unspecified vulnerabilities in Joomla! before 1.0.12 have unknown impact and attack vectors related to (1) "unneeded legacy functions" and (…

Patch available
Fix from $1,600 2006-12-31
Com Events HIGH 7.5
CVE-2006-5039

Unspecified vulnerability in Events 1.3 beta module (com_events) for Joomla! has unspecified impact and attack vectors.

No fix yet
Fix from $1,950 2006-09-27
Com Sef HIGH 7.5
CVE-2006-5040

Unspecified vulnerability in SEF404x (com_sef) for Joomla! has unspecified impact and attack vectors.

No fix yet
Fix from $1,950 2006-09-27
Com Hotproperties HIGH 7.5
CVE-2006-5041

Unspecified vulnerability in Hot Properties (possibly com_hotproperties) 0.97 and earlier for Joomla! has unspecified impact and attack vectors.

Fix: after 0.97
Fix from $1,950 2006-09-27
Com Mosmedia HIGH 7.5
CVE-2006-5042

Unspecified vulnerability in mosMedia (com_mosmedia) 1.0.8 and earlier for Joomla! has unspecified impact and attack vectors.

Fix: after 1.0.8
Fix from $1,950 2006-09-27
Prince Clan Chess Component HIGH 7.5
CVE-2006-5044

Unspecified vulnerability in Prince Clan (Princeclan) Chess component (com_pcchess) 0.8 and earlier for Mambo and Joomla! has unspecified impact and …

Fix: after 0.8
Fix from $1,950 2006-09-27
Rs Gallery2 HIGH 7.5
CVE-2006-5046

Unspecified vulnerability in RS Gallery2 (com_rsgallery2) 1.11.3 and earlier for Joomla! has unspecified impact and attack vectors, related to lack o…

Fix: after 1.11.3_alpha
Fix from $1,950 2006-09-27
Rs Gallery2 HIGH 7.5
CVE-2006-5047

Unspecified vulnerability in rsgallery2.html.php in RS Gallery2 component (com_rsgallery2) before 1.11.3 for Joomla! allows attackers to execute arbi…

Fix: after 1.11.2_alpha
Fix from $1,950 2006-09-27
Classifieds Component HIGH 7.5
CVE-2006-5049

Unspecified vulnerability in Classifieds (com_classifieds) component 1.3 and earlier for Joomla! has unspecified impact and attack vectors.

Fix: after 1.3
Fix from $1,950 2006-09-27
Joomlalib HIGH 10.0
CVE-2006-4996

Unspecified vulnerability in JoomlaLib (com_joomlalib) before 1.2.2 for Joomla! allows remote attackers to have an unknown impact, related to "Joomla…

Fix: after 1.2.0_beta
Fix from $1,950 2006-09-26
Jd Wordpress HIGH 7.5
CVE-2006-4992EPSS 9%

Multiple PHP remote file inclusion vulnerabilities in JD-WordPress for Joomla! (com_jd-wp) 2.0-1.0 RC2 allow remote attackers to execute arbitrary PH…

No fix yet
Fix from $1,950 2006-09-26
Bsq Sitestats HIGH 7.5
CVE-2006-4995

PHP remote file inclusion vulnerability in BSQ Sitestats (bsq_sitestats) before 2.1.1 for Joomla! allows remote attackers to execute arbitrary PHP co…

Mitigation only
Fix from $1,950 2006-09-26
Jim Component HIGH 7.5
CVE-2006-4556

PHP remote file inclusion vulnerability in index.php in the JIM component for Mambo and Joomla! allows remote attackers to execute arbitrary PHP code…

Mitigation only
Fix from $1,950 2006-09-06
Com Comprofiler Component MEDIUM 6.8
CVE-2006-4553

PHP remote file inclusion vulnerability in plugin.class.php in the com_comprofiler Components 1.0 RC2 for Mambo and Joomla! allows remote attackers t…

No fix yet
Fix from $1,600 2006-09-06
Joomla\! HIGH 7.5
CVE-2006-4469

Unspecified vulnerability in PEAR.php in Joomla! before 1.0.11 allows remote attackers to perform "remote execution," related to "Injection Flaws."

Fix: 1.0.11+
Fix from $1,950 2006-08-31
Joomla\! HIGH 7.5
CVE-2006-4470

Joomla! before 1.0.11 omits some checks for whether _VALID_MOS is defined, which allows attackers to have an unknown impact, possibly resulting in PH…

Fix: 1.0.11+
Fix from $1,950 2006-08-31
Joomla\! HIGH 7.5
CVE-2006-4472

Multiple unspecified vulnerabilities in Joomla! before 1.0.11 allow attackers to bypass user authentication via unknown vectors involving the (1) do_…

Fix: 1.0.11+
Fix from $1,950 2006-08-31
Joomla HIGH 7.5
CVE-2006-4475

Joomla! before 1.0.11 does not limit access to the Admin Popups functionality, which has unknown impact and attack vectors.

Fix: after 1.0.10
Fix from $1,950 2006-08-31
Joomla HIGH 7.5
CVE-2006-4476

Multiple unspecified vulnerabilities in Joomla! before 1.0.11, related to "Injection Flaws," allow attackers to have an unknown impact via (1) global…

Fix: after 1.0.10
Fix from $1,950 2006-08-31
Joomla\! MEDIUM 6.8
CVE-2006-4468

Multiple unspecified vulnerabilities in Joomla! before 1.0.11, related to unvalidated input, allow attackers to have an unknown impact via unspecifie…

Fix: 1.0.11+
Fix from $1,600 2006-08-31