Top technology
Linux 13140
Google 12525
Microsoft 12378
Apple 6692
Oracle 6673
Adobe 6383
Ibm 6286
Cisco 5751
Debian 3919
Mozilla 2886
Apache 2864
Redhat 2586
HIGH 7.5
CVE-2007-4777
SQL injection vulnerability in Joomla! 1.5 before RC2 (aka Endeleo) allows remote attackers to execute arbitrary SQL commands via unspecified vectors…
Joomla
Patch available
HIGH 7.5
CVE-2007-4778
Multiple SQL injection vulnerabilities in the content component (com_content) in Joomla! 1.5 Beta1, Beta2, and RC1 allow remote attackers to execute …
Joomla
Patch available
MEDIUM 6.8
CVE-2007-4780
Joomla! 1.5 before RC2 (aka Endeleo) allows remote attackers to obtain sensitive information (the full path) via unspecified vectors, probably involv…
Joomla
Patch available
MEDIUM 6.6
CVE-2007-4781EPSS 5%
administrator/index.php in the installer component (com_installer) in Joomla! 1.5 Beta1, Beta2, and RC1 allows remote authenticated administrators to…
Joomla
Patch available
HIGH 7.5
CVE-2007-4502
SQL injection vulnerability in index.php in the BibTeX component (com_jombib) 1.3 and earlier for Joomla! allows remote attackers to execute arbitrar…
Bibtex
after 1.3
HIGH 7.5
CVE-2007-4503
SQL injection vulnerability in index.php in the Nice Talk component (com_nicetalk) 0.9.3 and earlier for Joomla! allows remote attackers to execute a…
Nice Talk
after 0.9.3
HIGH 7.5
CVE-2007-4506
SQL injection vulnerability in index.php in the NeoRecruit component (com_neorecruit) 1.4 and earlier for Joomla! allows remote attackers to execute …
Neorecruit
after 1.4
HIGH 7.5
CVE-2007-4509
SQL injection vulnerability in index.php in the EventList component (com_eventlist) 0.8 and earlier for Joomla! allows remote attackers to execute ar…
Eventlist
after 0.8
MEDIUM 5.0
CVE-2007-4504EPSS 9%
Directory traversal vulnerability in index.php in the RSfiles component (com_rsfiles) 1.0.2 and earlier for Joomla! allows remote attackers to read a…
Rsfiles
after 1.0.2
HIGH 7.5
CVE-2007-4244EPSS 8%
PHP remote file inclusion vulnerability in langset.php in J! Reactions (com_jreactions) 1.8.1 and earlier, a Joomla! component, allows remote attacke…
J Reactions
after 1.8.1
HIGH 9.3
CVE-2007-4188
Session fixation vulnerability in Joomla! before 1.0.13 (aka Sunglow) allows remote attackers to hijack administrative web sessions via unspecified v…
Joomla\!
1.0.13+
HIGH 7.5
CVE-2007-4184
SQL injection vulnerability in administrator/popups/pollwindow.php in Joomla! 1.0.12 allows remote attackers to execute arbitrary SQL commands via th…
Joomla
Mitigation only
HIGH 7.5
CVE-2007-4187EPSS 11%
Multiple eval injection vulnerabilities in the com_search component in Joomla! 1.5 beta before RC1 (aka Mapya) allow remote attackers to execute arbi…
Joomla
Mitigation only
MEDIUM 6.8
CVE-2007-4186EPSS 6%
PHP remote file inclusion vulnerability in admin.tour_toto.php in the Tour de France Pool (com_tour_toto) 1.0.1 module for Joomla! allows remote atta…
Tour De France Pool
No fix yet
MEDIUM 5.0
CVE-2007-4185
Joomla! 1.0.12 allows remote attackers to obtain sensitive information via a direct request for (1) Stat.php (2) OutputFilter.php, (3) OutputCache.ph…
Joomla
Mitigation only
HIGH 7.5
CVE-2007-4046
SQL injection vulnerability in index.php in the Pony Gallery (com_ponygallery) 1.5 and earlier component for Joomla! allows remote attackers to execu…
Pony Gallery
after 1.5
HIGH 7.5
CVE-2007-3932EPSS 6%
uploadimg.php in the Expose RC35 and earlier (com_expose) component for Joomla! sends an error message but does not exit when it detects an attempt t…
Expose
No fix yet
MEDIUM 6.8
CVE-2007-3130
Multiple PHP remote file inclusion vulnerabilities in the OpenWiki (formerly JD-Wiki) component (com_jd-wiki) 1.0.2, and possibly earlier, for Joomla…
Jd Wiki
No fix yet
MEDIUM 6.8
CVE-2007-2199EPSS 47%
PHP remote file inclusion vulnerability in lib/pcltar.lib.php (aka pcltar.php) in the PclTar module 1.3 and 1.3.1 for Vincent Blavet PhpConcept Libra…
Joomla
No fix yet
MEDIUM 6.8
CVE-2007-2196
PHP remote file inclusion vulnerability in jambook.php in the Jambook (com_Jambook) 1.0 beta7 module for Mambo and Joomla! allows remote attackers to…
Jambook
Mitigation only
MEDIUM 6.8
CVE-2007-2005EPSS 7%
Multiple PHP remote file inclusion vulnerabilities in the Taskhopper 1.1 component for Mambo and Joomla! allow remote attackers to execute arbitrary …
Taskhopper Component
No fix yet
HIGH 10.0
CVE-2007-1699EPSS 11%
Multiple PHP remote file inclusion vulnerabilities in the SWmenu (com_swmenupro and com_swmenufree) 4.0 component for Mambo and Joomla! allow remote …
Swmenu Component
No fix yet
HIGH 7.5
CVE-2007-1703
SQL injection vulnerability in index.php in the RWCards (com_rwcards) 2.4.3 and earlier component for Joomla! allows remote attackers to execute arbi…
Rwcards Component
after 2.4.3
HIGH 7.5
CVE-2007-1704
SQL injection vulnerability in index.php in the Car Manager (com_resman) 1.1 and earlier component for Joomla! allows remote attackers to execute arb…
Car Manager
after 1.1
HIGH 9.3
CVE-2007-1596EPSS 8%
Multiple PHP remote file inclusion vulnerabilities in the NFN Address Book (com_nfn_addressbook) 0.4 component for Mambo and Joomla! allow remote att…
Nfn Address Book
No fix yet
HIGH 7.5
CVE-2006-7123
Multiple SQL injection vulnerabilities in BSQ Sitestats (component for Joomla) 1.8.0, and possibly other versions before 2.2.1, allow remote attacker…
Bsq Sitestats
Mitigation only
HIGH 7.5
CVE-2006-7124
PHP remote file inclusion vulnerability in external/rssfeeds.php in BSQ Sitestats (component for Joomla) 1.8.0, and possibly other versions before 2.…
Bsq Sitestats
Patch available
MEDIUM 6.8
CVE-2006-7122
Cross-site scripting (XSS) vulnerability in the IP Address Lookup functionality in BSQ Sitestats (component for Joomla) 1.8.0, and possibly other ver…
Bsq Sitestats
Patch available
MEDIUM 6.8
CVE-2006-7125
Cross-site scripting (XSS) vulnerability in Joomla BSQ Sitestats 1.8.0 and 2.2.1 allows remote attackers to inject arbitrary web script or HTML via t…
Bsq Sitestats
Patch available
MEDIUM 6.8
CVE-2006-7126
SQL injection vulnerability in Joomla BSQ Sitestats 1.8.0 and 2.2.1 allows remote attackers to execute arbitrary SQL commands via the query string, p…
Bsq Sitestats
Patch available