Каталог CVE

Расширение: Joomla

Каталог

Все известные уязвимости

Статус «активна» означает, что запись опубликована в 2026 году. Он не заменяет проверку версии и официального исправления.

Сбросить

Найдено: 1 461

Расширение: Joomla
Средняя CVSS 4.3

CVE-2007-4189

РасширениеJoomla Joomla\!
Разработчикosvdb

Multiple cross-site scripting (XSS) vulnerabilities in Joomla! before 1.0.13 (aka Sunglow) allow remote attackers to inject arbitrary web script or HTML via unspecified vectors in the (1) c…

08.08.2007
Средняя CVSS 4.3

CVE-2007-4190

РасширениеJoomla Joomla\!
Разработчикosvdb

CRLF injection vulnerability in Joomla! before 1.0.13 (aka Sunglow) allows remote attackers to inject arbitrary HTTP headers and probably conduct HTTP response splitting attacks via CRLF se…

08.08.2007
Высокая CVSS 7.5

CVE-2007-4128

РасширениеFirestorm Technologies Gmaps
Разработчикfirestorm-technologies

SQL injection vulnerability in index.php in the Firestorm Technologies GMaps (com_gmaps) 1.00 component for Joomla! allows remote attackers to execute arbitrary SQL commands via the mapId p…

01.08.2007
Высокая CVSS 7.5

CVE-2007-4046

РасширениеJoomla Pony Gallery
Разработчикosvdb

SQL injection vulnerability in index.php in the Pony Gallery (com_ponygallery) 1.5 and earlier component for Joomla! allows remote attackers to execute arbitrary SQL commands via the catid…

27.07.2007
Высокая CVSS 7.5

CVE-2007-3932

РасширениеJoomla Expose
Разработчикosvdb

uploadimg.php in the Expose RC35 and earlier (com_expose) component for Joomla! sends an error message but does not exit when it detects an attempt to upload a non-JPEG file, which allows r…

21.07.2007
Средняя CVSS 4.3

CVE-2007-3249

РасширениеJoomla Letterman Subscriber
Разработчикmarc.info

Cross-site scripting (XSS) vulnerability in mod_lettermansubscribe.php in the Letterman Subscriber (mod_letterman) before 1.2.5 module for Joomla! allows remote attackers to inject arbitrar…

18.06.2007
Средняя CVSS 6.8

CVE-2007-3130

РасширениеJoomla Jd-wiki
Разработчикosvdb

Multiple PHP remote file inclusion vulnerabilities in the OpenWiki (formerly JD-Wiki) component (com_jd-wiki) 1.0.2, and possibly earlier, for Joomla! allow remote attackers to execute arbi…

08.06.2007
Высокая CVSS 7.5

CVE-2007-2933

РасширениеPhil-a-form Phil-a-form
Разработчикosvdb

SQL injection vulnerability in index.php in the Phil-a-Form (com_philaform) 1.2.0.0 and earlier component for Joomla! allows remote attackers to execute arbitrary SQL commands via the form_…

31.05.2007
Высокая CVSS 7.5

CVE-2007-2792

РасширениеCom Yanc Com Yanc
Разработчикosvdb

SQL injection vulnerability in the Yet another Newsletter Component (aka YaNC or com_yanc) component before 1.5 beta 3 for Mambo and Joomla! allows remote attackers to execute arbitrary SQL…

22.05.2007
Средняя CVSS 6.8

CVE-2007-2319

Разработчикosvdb

PHP remote file inclusion vulnerability in the AutoStand 1.1 and earlier module for Joomla! allows remote attackers to execute arbitrary PHP code via a URL in the mosConfig_absolute_path pa…

26.04.2007
Средняя CVSS 6.8

CVE-2007-2199

Разработчикosvdb

PHP remote file inclusion vulnerability in lib/pcltar.lib.php (aka pcltar.php) in the PclTar module 1.3 and 1.3.1 for Vincent Blavet PhpConcept Library, as used in multiple products includi…

24.04.2007
Средняя CVSS 6.8

CVE-2007-2196

РасширениеJoomla Jambook
Разработчикattrition

PHP remote file inclusion vulnerability in jambook.php in the Jambook (com_Jambook) 1.0 beta7 module for Mambo and Joomla! allows remote attackers to execute arbitrary PHP code via a URL in…

24.04.2007
Высокая CVSS 7.5

CVE-2007-2143

Разработчикosvdb

PHP remote file inclusion vulnerability in index.php in the Be2004-2 template for Joomla! allows remote attackers to execute arbitrary PHP code via a URL in the mosConfig_absolute_path para…

19.04.2007
Средняя CVSS 6.8

CVE-2007-2144

РасширениеJoomlapack Joomlapack
Разработчикosvdb

PHP remote file inclusion vulnerability in includes/CAltInstaller.php in the JoomlaPack (com_jpack) 1.0.4a2 RE component for Joomla! allows remote attackers to execute arbitrary PHP code vi…

19.04.2007
Средняя CVSS 6.8

CVE-2007-2089

Разработчикsecurityfocus

Multiple PHP remote file inclusion vulnerabilities in the Jx Development Article 1.1 and earlier component for Mambo and Joomla! allow remote attackers to execute arbitrary PHP code via a U…

18.04.2007
Высокая CVSS 7.5

CVE-2007-2043

РасширениеAvant-garde Solutions Mosmedia
Разработчикosvdb

Multiple PHP remote file inclusion vulnerabilities in the Avant-Garde Solutions MOSMedia (com_mosmedia) 1.08 and earlier module for Mambo and Joomla! allow remote attackers to execute arbit…

16.04.2007
Высокая CVSS 7.5

CVE-2007-2044

Разработчикosvdb

PHP remote file inclusion vulnerability in mod_weather.php in the Antonis Ventouris Weather module for Mambo and Joomla! allows remote attackers to execute arbitrary PHP code via a URL in t…

16.04.2007
Средняя CVSS 6.8

CVE-2007-2005

РасширениеJoomla Taskhopper Component
Разработчикattrition

Multiple PHP remote file inclusion vulnerabilities in the Taskhopper 1.1 component for Mambo and Joomla! allow remote attackers to execute arbitrary PHP code via a URL in the mosConfig_abso…

12.04.2007