Vulnerability index

Browse CVEs

7 matching
Filters 2 Clear all
Severity

Filters apply as you choose them.

CRITICAL 9.8 CVE-2018-5981 SQL Injection exists in the Gallery WD 1.3.6 component for Joomla! via the tag_id parameter or gallery_id parameter. Gallery Wd No fix yet Fix from $2,3002018-02-17 CRITICAL 9.8 CVE-2018-5991 SQL Injection exists in the Form Maker 3.6.12 component for Joomla! via the id, from, or to parameter in a view=stats request, a different vulnerabil… Form Maker No fix yet Fix from $2,3002018-02-17 CRITICAL 9.8 CVE-2015-2798 SQL injection vulnerability in Joomla! Component Contact Form Maker 1.0.1 allows remote attackers to execute arbitrary SQL commands via the id parame… Contact Form Maker No fix yet Fix from $2,3002017-07-25 MEDIUM 5.8 CVE-2015-4352 Cross-site request forgery (CSRF) vulnerability in the Spider Video Player module for Drupal allows remote attackers to hijack the authentication of … Web Dorado Spider Video Player Mitigation only Fix from $1,6002015-06-15 MEDIUM 6.8 CVE-2015-4350 Multiple cross-site request forgery (CSRF) vulnerabilities in the Spider Catalog module for Drupal allow remote attackers to hijack the authenticatio… Spider Catalog Mitigation only Fix from $1,6002015-06-15 HIGH 7.5 CVE-2015-2562EPSS 39% Multiple SQL injection vulnerabilities in the Web-Dorado ECommerce WD (com_ecommercewd) component 1.2.5 for Joomla! allow remote attackers to execute… Ecommerce Wd No fix yet Fix from $1,9502015-03-20 HIGH 7.5 CVE-2015-2196EPSS 11% SQL injection vulnerability in Spider Event Calendar 1.4.9 for WordPress allows remote attackers to execute arbitrary SQL commands via the cat_id par… Spider Calendar No fix yet Fix from $1,9502015-03-03