Vulnerability index

Browse CVEs

480 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

HIGH 7.5 CVE-2007-4777 SQL injection vulnerability in Joomla! 1.5 before RC2 (aka Endeleo) allows remote attackers to execute arbitrary SQL commands via unspecified vectors… Joomla Patch available Fix from $1,9502007-09-10 HIGH 7.5 CVE-2007-4778 Multiple SQL injection vulnerabilities in the content component (com_content) in Joomla! 1.5 Beta1, Beta2, and RC1 allow remote attackers to execute … Joomla Patch available Fix from $1,9502007-09-10 MEDIUM 6.8 CVE-2007-4780 Joomla! 1.5 before RC2 (aka Endeleo) allows remote attackers to obtain sensitive information (the full path) via unspecified vectors, probably involv… Joomla Patch available Fix from $1,6002007-09-10 MEDIUM 6.6 CVE-2007-4781EPSS 5% administrator/index.php in the installer component (com_installer) in Joomla! 1.5 Beta1, Beta2, and RC1 allows remote authenticated administrators to… Joomla Patch available Fix from $1,6002007-09-10 HIGH 7.5 CVE-2007-4502 SQL injection vulnerability in index.php in the BibTeX component (com_jombib) 1.3 and earlier for Joomla! allows remote attackers to execute arbitrar… Bibtex after 1.3 Fix from $1,9502007-08-23 HIGH 7.5 CVE-2007-4503 SQL injection vulnerability in index.php in the Nice Talk component (com_nicetalk) 0.9.3 and earlier for Joomla! allows remote attackers to execute a… Nice Talk after 0.9.3 Fix from $1,9502007-08-23 HIGH 7.5 CVE-2007-4506 SQL injection vulnerability in index.php in the NeoRecruit component (com_neorecruit) 1.4 and earlier for Joomla! allows remote attackers to execute … Neorecruit after 1.4 Fix from $1,9502007-08-23 HIGH 7.5 CVE-2007-4509 SQL injection vulnerability in index.php in the EventList component (com_eventlist) 0.8 and earlier for Joomla! allows remote attackers to execute ar… Eventlist after 0.8 Fix from $1,9502007-08-23 MEDIUM 5.0 CVE-2007-4504EPSS 9% Directory traversal vulnerability in index.php in the RSfiles component (com_rsfiles) 1.0.2 and earlier for Joomla! allows remote attackers to read a… Rsfiles after 1.0.2 Fix from $1,6002007-08-23 HIGH 7.5 CVE-2007-4244EPSS 8% PHP remote file inclusion vulnerability in langset.php in J! Reactions (com_jreactions) 1.8.1 and earlier, a Joomla! component, allows remote attacke… J Reactions after 1.8.1 Fix from $1,9502007-08-08 HIGH 9.3 CVE-2007-4188 Session fixation vulnerability in Joomla! before 1.0.13 (aka Sunglow) allows remote attackers to hijack administrative web sessions via unspecified v… Joomla\! 1.0.13+ Fix from $1,9502007-08-08 HIGH 7.5 CVE-2007-4184 SQL injection vulnerability in administrator/popups/pollwindow.php in Joomla! 1.0.12 allows remote attackers to execute arbitrary SQL commands via th… Joomla Mitigation only Fix from $1,9502007-08-08 HIGH 7.5 CVE-2007-4187EPSS 11% Multiple eval injection vulnerabilities in the com_search component in Joomla! 1.5 beta before RC1 (aka Mapya) allow remote attackers to execute arbi… Joomla Mitigation only Fix from $1,9502007-08-08 MEDIUM 6.8 CVE-2007-4186EPSS 6% PHP remote file inclusion vulnerability in admin.tour_toto.php in the Tour de France Pool (com_tour_toto) 1.0.1 module for Joomla! allows remote atta… Tour De France Pool No fix yet Fix from $1,6002007-08-08 MEDIUM 5.0 CVE-2007-4185 Joomla! 1.0.12 allows remote attackers to obtain sensitive information via a direct request for (1) Stat.php (2) OutputFilter.php, (3) OutputCache.ph… Joomla Mitigation only Fix from $1,6002007-08-08 HIGH 7.5 CVE-2007-4046 SQL injection vulnerability in index.php in the Pony Gallery (com_ponygallery) 1.5 and earlier component for Joomla! allows remote attackers to execu… Pony Gallery after 1.5 Fix from $1,9502007-07-27 HIGH 7.5 CVE-2007-3932EPSS 6% uploadimg.php in the Expose RC35 and earlier (com_expose) component for Joomla! sends an error message but does not exit when it detects an attempt t… Expose No fix yet Fix from $1,9502007-07-21 MEDIUM 6.8 CVE-2007-3130 Multiple PHP remote file inclusion vulnerabilities in the OpenWiki (formerly JD-Wiki) component (com_jd-wiki) 1.0.2, and possibly earlier, for Joomla… Jd Wiki No fix yet Fix from $1,6002007-06-08 MEDIUM 6.8 CVE-2007-2199EPSS 47% PHP remote file inclusion vulnerability in lib/pcltar.lib.php (aka pcltar.php) in the PclTar module 1.3 and 1.3.1 for Vincent Blavet PhpConcept Libra… Joomla No fix yet Fix from $1,6002007-04-24 MEDIUM 6.8 CVE-2007-2196 PHP remote file inclusion vulnerability in jambook.php in the Jambook (com_Jambook) 1.0 beta7 module for Mambo and Joomla! allows remote attackers to… Jambook Mitigation only Fix from $1,6002007-04-24 MEDIUM 6.8 CVE-2007-2005EPSS 7% Multiple PHP remote file inclusion vulnerabilities in the Taskhopper 1.1 component for Mambo and Joomla! allow remote attackers to execute arbitrary … Taskhopper Component No fix yet Fix from $1,6002007-04-12 HIGH 10.0 CVE-2007-1699EPSS 11% Multiple PHP remote file inclusion vulnerabilities in the SWmenu (com_swmenupro and com_swmenufree) 4.0 component for Mambo and Joomla! allow remote … Swmenu Component No fix yet Fix from $1,9502007-03-27 HIGH 7.5 CVE-2007-1703 SQL injection vulnerability in index.php in the RWCards (com_rwcards) 2.4.3 and earlier component for Joomla! allows remote attackers to execute arbi… Rwcards Component after 2.4.3 Fix from $1,9502007-03-27 HIGH 7.5 CVE-2007-1704 SQL injection vulnerability in index.php in the Car Manager (com_resman) 1.1 and earlier component for Joomla! allows remote attackers to execute arb… Car Manager after 1.1 Fix from $1,9502007-03-27 HIGH 9.3 CVE-2007-1596EPSS 8% Multiple PHP remote file inclusion vulnerabilities in the NFN Address Book (com_nfn_addressbook) 0.4 component for Mambo and Joomla! allow remote att… Nfn Address Book No fix yet Fix from $1,9502007-03-22 HIGH 7.5 CVE-2006-7123 Multiple SQL injection vulnerabilities in BSQ Sitestats (component for Joomla) 1.8.0, and possibly other versions before 2.2.1, allow remote attacker… Bsq Sitestats Mitigation only Fix from $1,9502007-03-06 HIGH 7.5 CVE-2006-7124 PHP remote file inclusion vulnerability in external/rssfeeds.php in BSQ Sitestats (component for Joomla) 1.8.0, and possibly other versions before 2.… Bsq Sitestats Patch available Fix from $1,9502007-03-06 MEDIUM 6.8 CVE-2006-7122 Cross-site scripting (XSS) vulnerability in the IP Address Lookup functionality in BSQ Sitestats (component for Joomla) 1.8.0, and possibly other ver… Bsq Sitestats Patch available Fix from $1,6002007-03-06 MEDIUM 6.8 CVE-2006-7125 Cross-site scripting (XSS) vulnerability in Joomla BSQ Sitestats 1.8.0 and 2.2.1 allows remote attackers to inject arbitrary web script or HTML via t… Bsq Sitestats Patch available Fix from $1,6002007-03-06 MEDIUM 6.8 CVE-2006-7126 SQL injection vulnerability in Joomla BSQ Sitestats 1.8.0 and 2.2.1 allows remote attackers to execute arbitrary SQL commands via the query string, p… Bsq Sitestats Patch available Fix from $1,6002007-03-06