Каталог CVE

Расширение: Joomla

Каталог

Все известные уязвимости

Статус «активна» означает, что запись опубликована в 2026 году. Он не заменяет проверку версии и официального исправления.

Сбросить

Найдено: 1 461

Расширение: Joomla
Высокая CVSS 7.5

CVE-2009-0379

РасширениеJoomla Com Pcchess
Разработчикsecurityfocus

SQL injection vulnerability in the Prince Clan Chess Club (com_pcchess) component for Joomla! allows remote attackers to execute arbitrary SQL commands via the game_id parameter in a showga…

02.02.2009
Средняя CVSS 4.3

CVE-2009-0378

РасширениеJoomla Com Beamospetition
Разработчикsecurityfocus

Cross-site scripting (XSS) vulnerability in index.php in the beamospetition (com_beamospetition) 1.0.12 component for Joomla! allows remote attackers to inject arbitrary web script or HTML…

02.02.2009
Высокая CVSS 7.5

CVE-2009-0377

РасширениеJoomla Com Beamospetition
Разработчикsecurityfocus

SQL injection vulnerability in the beamospetition (com_beamospetition) 1.0.12 component for Joomla! allows remote attackers to execute arbitrary SQL commands via the mpid parameter in a sig…

02.02.2009
Высокая CVSS 7.5

CVE-2009-0373

Разработчикsecunia

SQL injection vulnerability in the ElearningForce Flash Magazine Deluxe (com_flashmagazinedeluxe) component for Joomla! allows remote attackers to execute arbitrary SQL commands via the mag…

30.01.2009
Высокая CVSS 7.5

CVE-2009-0333

РасширениеJoomla Com Waticketsystem
Разработчикsecunia

SQL injection vulnerability in the WebAmoeba (WA) Ticket System (com_waticketsystem) component for Joomla! allows remote attackers to execute arbitrary SQL commands via the catid parameter…

29.01.2009
Высокая CVSS 7.5

CVE-2009-0329

РасширениеJoomla Com Pccookbook
Разработчикsecurityfocus

SQL injection vulnerability in the PcCookBook (com_pccookbook) component for Joomla! allows remote attackers to execute arbitrary SQL commands via the recipe_id parameter in a viewrecipe ac…

29.01.2009
Высокая CVSS 7.5

CVE-2008-5957

РасширениеMydyngallery Mydyngallery
Разработчикsecurityfocus

SQL injection vulnerability in the Mydyngallery (com_mydyngallery) component 1.4.2 for Joomla! allows remote attackers to execute arbitrary SQL commands via the directory parameter to index…

23.01.2009
Средняя CVSS 5.0

CVE-2009-0113

РасширениеJoomla Xstandard
Разработчикsecunia

Directory traversal vulnerability in attachmentlibrary.php in the XStandard component for Joomla! 1.5.8 and earlier allows remote attackers to list arbitrary directories via a .. (dot dot)…

09.01.2009
Высокая CVSS 7.5

CVE-2008-5875

РасширениеJoomlahbs Com Lowcosthotels
Разработчикsecurityreason

SQL injection vulnerability in the com_lowcosthotels component in the Hotel Booking Reservation System (aka HBS) for Joomla! allows remote attackers to execute arbitrary SQL commands via th…

08.01.2009
Высокая CVSS 7.5

CVE-2008-5874

РасширениеJoomlahbs Com 5starhotels
Разработчикdownloads.securityfocus

Multiple SQL injection vulnerabilities in the Hotel Booking Reservation System (aka HBS) for Joomla! allow remote attackers to execute arbitrary SQL commands via the id parameter in a showh…

08.01.2009
Высокая CVSS 7.5

CVE-2008-5865

Разработчикsecunia

SQL injection vulnerability in the com_hbssearch component 1.0 in the Hotel Booking Reservation System (aka HBS) 1.0.0 for Joomla! allows remote attackers to execute arbitrary SQL commands…

06.01.2009
Высокая CVSS 7.5

CVE-2008-5864

РасширениеJoomlahbs Com Tophotelmodule
Разработчикsecurityreason

SQL injection vulnerability in the Top Hotel (com_tophotelmodule) component 1.0 in the Hotel Booking Reservation System (aka HBS) 1.0.0 for Joomla! allows remote attackers to execute arbitr…

06.01.2009
Высокая CVSS 7.5

CVE-2008-5811

РасширениеJoomla Com Paxgallery
Разработчикosvdb

SQL injection vulnerability in the PaxGallery (com_paxgallery) component 0.1 for Joomla! allows remote attackers to execute arbitrary SQL commands via the gid parameter in a table action to…

02.01.2009
Средняя CVSS 6.8

CVE-2008-5793

РасширениеRecly Clickheat-heatmap
Разработчикsecurityreason

Multiple PHP remote file inclusion vulnerabilities in the Clickheat - Heatmap stats (com_clickheat) component 1.0.1 for Joomla! allow remote attackers to execute arbitrary PHP code via a UR…

31.12.2008
Высокая CVSS 7.5

CVE-2008-5790

РасширениеRecly Competitions
Разработчикsecurityfocus

Multiple PHP remote file inclusion vulnerabilities in the Recly!Competitions (com_competitions) component 1.0 for Joomla! allow remote attackers to execute arbitrary PHP code via a URL in t…

31.12.2008
Высокая CVSS 7.5

CVE-2008-5789

РасширениеRecly Interactive Feederator
Разработчикsecurityreason

Multiple PHP remote file inclusion vulnerabilities in the Recly Interactive Feederator (com_feederator) component 1.0.5 for Joomla! allow remote attackers to execute arbitrary PHP code via…

31.12.2008
Высокая CVSS 7.5

CVE-2008-4122

РасширениеJoomla Joomla\!
Разработчикint21.de

Joomla! 1.5.8 does not set the secure flag for the session cookie in an https session, which makes it easier for remote attackers to capture this cookie by intercepting its transmission wit…

19.12.2008
Высокая CVSS 7.5

CVE-2008-5671

РасширениеJoomla Joomla
Разработчикsecunia

PHP remote file inclusion vulnerability in index.php in Joomla! 1.0.11 through 1.0.14, when RG_EMULATION is enabled in configuration.php, allows remote attackers to execute arbitrary PHP co…

19.12.2008