Каталог CVE

Расширение: Joomla Joomla\!

Каталог

Все известные уязвимости

Статус «активна» означает, что запись опубликована в 2026 году. Он не заменяет проверку версии и официального исправления.

Сбросить

Найдено: 575

Расширение: Joomla Joomla\!
Высокая CVSS 7.5

CVE-2010-0795

Разработчикosvdb

SQL injection vulnerability in the JE Event Calendars (com_jeeventcalendar) component 1.0 for Joomla! allows remote attackers to execute arbitrary SQL commands via the event_id parameter in…

02.03.2010
Средняя CVSS 6.8

CVE-2010-0760

Разработчикsecunia

Multiple directory traversal vulnerabilities in the Core Design Scriptegrator plugin 1.4.1 for Joomla! allow remote attackers to include and execute arbitrary local files via directory trav…

27.02.2010
Высокая CVSS 7.5

CVE-2010-0759

Разработчикpacketstormsecurity

Directory traversal vulnerability in plugins/system/cdscriptegrator/libraries/highslide/js/jsloader.php in the Core Design Scriptegrator plugin 1.4.1 for Joomla! allows remote attackers to…

27.02.2010
Высокая CVSS 7.5

CVE-2010-0753

РасширениеComponentslab Com Sqlreport
Разработчикosvdb

SQL injection vulnerability in the SQL Reports (com_sqlreport) component 1.1 for Joomla! allows remote attackers to execute arbitrary SQL commands via the user_id parameter to ajax/print.ph…

27.02.2010
Высокая CVSS 7.5

CVE-2010-0692

РасширениеIptechinside Com Jquarks
Разработчикsecunia

SQL injection vulnerability in the IP-Tech JQuarks (com_jquarks) Component 0.2.3, and possibly earlier, for Joomla! allows remote attackers to execute arbitrary SQL commands via the id para…

23.02.2010
Средняя CVSS 4.3

CVE-2009-4651

РасширениеOnnogroen Com Webeecomment
Разработчикjeffchannell

Multiple cross-site scripting (XSS) vulnerabilities in the Webee Comments (com_webeecomment) component 1.1.1, 1.2, and 2.0 for Joomla! allow remote attackers to inject arbitrary web script…

22.02.2010
Высокая CVSS 7.5

CVE-2009-4650

РасширениеOnnogroen Com Webeecomment
Разработчикjeffchannell

SQL injection vulnerability in the Webee Comments (com_webeecomment) component 1.1.1, 1.2, and 2.0 for Joomla! allows remote attackers to execute arbitrary SQL commands via the articleId pa…

22.02.2010
Средняя CVSS 5.0

CVE-2010-0676

РасширениеWeberr Com Rwcards
Разработчикpacketstormsecurity

Directory traversal vulnerability in index.php in the RWCards (com_rwcards) component 3.0.18 for Joomla! allows remote attackers to read arbitrary files via a .. (dot dot) in the controller…

22.02.2010
Средняя CVSS 5.0

CVE-2010-0670

РасширениеIptechinside Com Jquarks
Разработчикiptechinside

Unspecified vulnerability in the IP-Tech JQuarks (com_jquarks) Component before 0.2.4 for Joomla! allows attackers to obtain the installation path for Joomla! via unknown vectors.

22.02.2010
Высокая CVSS 7.5

CVE-2010-0635

РасширениеJevents Jevents Search Plugin
Разработчикsecunia

SQL injection vulnerability in the plgSearchEventsearch::onSearch method in eventsearch.php in the JEvents Search plugin 1.5 through 1.5.3 for Joomla! allows remote attackers to execute arb…

12.02.2010
Высокая CVSS 7.5

CVE-2010-0632

Разработчикpacketstormsecurity

SQL injection vulnerability in the Parkview Consultants SimpleFAQ (com_simplefaq) component for Joomla! allows remote attackers to execute arbitrary SQL commands via the catid parameter in…

12.02.2010
Высокая CVSS 7.5

CVE-2010-0610

РасширениеWebguerilla Com Photoblog
Разработчикpacketstormsecurity

Multiple SQL injection vulnerabilities in the Photoblog (com_photoblog) component for Joomla! allow remote attackers to execute arbitrary SQL commands via the blog parameter in an images ac…

11.02.2010
Средняя CVSS 5.8

CVE-2010-0467

Разработчикsecunia

Directory traversal vulnerability in the ccNewsletter (com_ccnewsletter) component 1.0.5 for Joomla! allows remote attackers to read arbitrary files via a .. (dot dot) in the controller par…

02.02.2010
Высокая CVSS 7.5

CVE-2010-0459

РасширениеYoflash Com Mochigames
Разработчикpacketstormsecurity

SQL injection vulnerability in the Mochigames (com_mochigames) component 0.51 and possibly other versions for Joomla! allows remote attackers to execute arbitrary SQL commands via the id pa…

28.01.2010
Высокая CVSS 7.5

CVE-2010-0456

РасширениеIndianpulses Com Gameserver
Разработчикexploit-db

SQL injection vulnerability in the indianpulse Game Server (com_gameserver) component 1.2 for Joomla! allows remote attackers to execute arbitrary SQL commands via the grp parameter in a ga…

28.01.2010
Средняя CVSS 4.3

CVE-2010-0374

РасширениеCodingfish Com Marketplace
Разработчикpacketstormsecurity

Cross-site scripting (XSS) vulnerability in the Marketplace (com_marketplace) component 1.2 for Joomla! allows remote attackers to inject arbitrary web script or HTML via the catid paramete…

21.01.2010
Высокая CVSS 7.5

CVE-2010-0373

РасширениеJoomla Com Libros
Разработчикpacketstormsecurity

SQL injection vulnerability in the libros (com_libros) component for Joomla! allows remote attackers to execute arbitrary SQL commands via the id parameter in a detail action to index.php.

21.01.2010
Высокая CVSS 7.5

CVE-2010-0372

РасширениеHong Chuyen Com Articlemanager
Разработчикpacketstormsecurity

SQL injection vulnerability in the Articlemanager (com_articlemanager) component for Joomla! allows remote attackers to execute arbitrary SQL commands via the artid parameter in a display a…

21.01.2010