Vulnerability index

Browse CVEs

7 matching
Filters 2 Clear all
Severity

Filters apply as you choose them.

Gallery Wd CRITICAL 9.8
CVE-2018-5981

SQL Injection exists in the Gallery WD 1.3.6 component for Joomla! via the tag_id parameter or gallery_id parameter.

No fix yet
Fix from $2,300 2018-02-17
Form Maker CRITICAL 9.8
CVE-2018-5991

SQL Injection exists in the Form Maker 3.6.12 component for Joomla! via the id, from, or to parameter in a view=stats request, a different vulnerabil…

No fix yet
Fix from $2,300 2018-02-17
Contact Form Maker CRITICAL 9.8
CVE-2015-2798

SQL injection vulnerability in Joomla! Component Contact Form Maker 1.0.1 allows remote attackers to execute arbitrary SQL commands via the id parame…

No fix yet
Fix from $2,300 2017-07-25
Web Dorado Spider Video Player MEDIUM 5.8
CVE-2015-4352

Cross-site request forgery (CSRF) vulnerability in the Spider Video Player module for Drupal allows remote attackers to hijack the authentication of …

Mitigation only
Fix from $1,600 2015-06-15
Spider Catalog MEDIUM 6.8
CVE-2015-4350

Multiple cross-site request forgery (CSRF) vulnerabilities in the Spider Catalog module for Drupal allow remote attackers to hijack the authenticatio…

Mitigation only
Fix from $1,600 2015-06-15
Ecommerce Wd HIGH 7.5
CVE-2015-2562EPSS 39%

Multiple SQL injection vulnerabilities in the Web-Dorado ECommerce WD (com_ecommercewd) component 1.2.5 for Joomla! allow remote attackers to execute…

No fix yet
Fix from $1,950 2015-03-20
Spider Calendar HIGH 7.5
CVE-2015-2196EPSS 11%

SQL injection vulnerability in Spider Event Calendar 1.4.9 for WordPress allows remote attackers to execute arbitrary SQL commands via the cat_id par…

No fix yet
Fix from $1,950 2015-03-03