Каталог CVE

Расширение: Joomla Joomla\!

Каталог

Все известные уязвимости

Статус «активна» означает, что запись опубликована в 2026 году. Он не заменяет проверку версии и официального исправления.

Сбросить

Найдено: 575

Расширение: Joomla Joomla\!
Высокая CVSS 7.5

CVE-2014-6632

РасширениеJoomla Joomla\!
Разработчикjoomla

Joomla! 2.5.x before 2.5.25, 3.x before 3.2.4, and 3.3.x before 3.3.4 allows remote attackers to authenticate and bypass intended access restrictions via vectors involving LDAP authenticati…

08.10.2014
Средняя CVSS 4.3

CVE-2014-6631

РасширениеJoomla Joomla\!
Разработчикjoomla

Cross-site scripting (XSS) vulnerability in com_media in Joomla! 3.2.x before 3.2.5 and 3.3.x before 3.3.4 allows remote attackers to inject arbitrary web script or HTML via unspecified vec…

08.10.2014
Средняя CVSS 4.3

CVE-2013-5955

РасширениеPurplebeanie Com Pbbooking
Разработчикpurplebeanie

Cross-site scripting (XSS) vulnerability in manage.php in the PBBooking (com_pbbooking) component 2.4 for Joomla! allows remote attackers to inject arbitrary web script or HTML via the an a…

19.03.2014
Средняя CVSS 4.3

CVE-2013-5953

РасширениеCodepeople Com Multicalendar
Разработчикcodepeople

Multiple cross-site scripting (XSS) vulnerabilities in tmpl/layout_editevent.php in the Multi Calendar (com_multicalendar) component 4.0.2, and possibly 4.8.5 and earlier, for Joomla! allow…

19.03.2014
Средняя CVSS 4.3

CVE-2013-5952

РасширениеCodologic Com Freichat
Разработчикjoomla

Multiple cross-site scripting (XSS) vulnerabilities in the Freichat (com_freichat) component, possibly 9.4 and earlier, for Joomla! allow remote attackers to inject arbitrary web script or…

19.03.2014
Средняя CVSS 4.3

CVE-2014-0793

РасширениеStackideas Komento
Разработчикstackideas

Multiple cross-site scripting (XSS) vulnerabilities in the StackIdeas Komento (com_komento) component before 1.7.3 for Joomla! allow remote attackers to inject arbitrary web script or HTML…

30.01.2014
Средняя CVSS 4.3

CVE-2014-0794

РасширениеJoomla Com Jvcomment
Разработчикexploit-db

SQL injection vulnerability in the JV Comment (com_jvcomment) component before 3.0.3 for Joomla! allows remote authenticated users to execute arbitrary SQL commands via the id parameter in…

26.01.2014
Средняя CVSS 4.3

CVE-2013-5583

РасширениеJoomla Joomla\!
Разработчикdisse.cting

Cross-site scripting (XSS) vulnerability in libraries/idna_convert/example.php in Joomla! 3.1.5 allows remote attackers to inject arbitrary web script or HTML via the lang parameter.

29.12.2013
Средняя CVSS 6.8

CVE-2013-5576

РасширениеJoomla Joomla\!
Разработчикdeveloper.joomla

administrator/components/com_media/helpers/media.php in the media manager in Joomla! 2.5.x before 2.5.14 and 3.x before 3.1.5 allows remote authenticated users or remote attackers to bypass…

09.10.2013
Средняя CVSS 4.3

CVE-2013-3719

РасширениеAlgisinfo Aicontactsafe
Разработчикsecunia

Cross-site scripting (XSS) vulnerability in the aiContactSafe component before 2.0.21 for Joomla! allows remote attackers to inject arbitrary web script or HTML via unspecified vectors.

31.05.2013
Средняя CVSS 4.3

CVE-2013-3534

РасширениеAlgisinfo Aicontactsafe
Разработчикsecunia

Cross-site scripting (XSS) vulnerability in the aiContactSafe component before 2.0.21 for Joomla! allows remote attackers to inject arbitrary web script or HTML via unspecified vectors.

13.05.2013
Средняя CVSS 4.3

CVE-2013-3267

РасширениеJoomla Joomla\!
Разработчикdeveloper.joomla

Cross-site scripting (XSS) vulnerability in the highlighter plugin in Joomla! 2.5.x before 2.5.10 and 3.0.x before 3.0.4 allows remote attackers to inject arbitrary web script or HTML via u…

03.05.2013
Средняя CVSS 5.5

CVE-2013-3242

РасширениеJoomla Joomla\!
Разработчикarchives.neohapsis

plugins/system/remember/remember.php in Joomla! 2.5.x before 2.5.10 and 3.0.x before 3.0.4 does not properly handle an object obtained by unserializing a cookie, which allows remote authent…

03.05.2013
Средняя CVSS 4.3

CVE-2013-3059

РасширениеJoomla Joomla\!
Разработчикdeveloper.joomla

Cross-site scripting (XSS) vulnerability in the Voting plugin in Joomla! 2.5.x before 2.5.10 and 3.0.x before 3.0.4 allows remote attackers to inject arbitrary web script or HTML via unspec…

03.05.2013
Средняя CVSS 4.3

CVE-2013-3058

РасширениеJoomla Joomla\!
Разработчикdeveloper.joomla

Cross-site scripting (XSS) vulnerability in Joomla! 2.5.x before 2.5.10 and 3.0.x before 3.0.4 allows remote attackers to inject arbitrary web script or HTML via unspecified vectors.

03.05.2013
Средняя CVSS 4.0

CVE-2013-3057

РасширениеJoomla Joomla\!
Разработчикdeveloper.joomla

Joomla! 2.5.x before 2.5.10 and 3.0.x before 3.0.4 allows remote authenticated users to bypass intended privilege requirements and list the privileges of arbitrary users via unspecified vec…

03.05.2013
Средняя CVSS 4.0

CVE-2013-3056

РасширениеJoomla Joomla\!
Разработчикdeveloper.joomla

Joomla! 2.5.x before 2.5.10 and 3.0.x before 3.0.4 allows remote authenticated users to bypass intended privilege requirements and delete the private messages of arbitrary users via unspeci…

03.05.2013
Средняя CVSS 5.0

CVE-2013-1455

РасширениеJoomla Joomla\!
Разработчикdeveloper.joomla

Joomla! 3.0.x through 3.0.2 allows attackers to obtain sensitive information via unspecified vectors related to an "Undefined variable."

13.02.2013