Каталог CVE

Расширение: Joomla Joomla\!

Каталог

Все известные уязвимости

Статус «активна» означает, что запись опубликована в 2026 году. Он не заменяет проверку версии и официального исправления.

Сбросить

Найдено: 575

Расширение: Joomla Joomla\!
Высокая CVSS 7.5

CVE-2009-4628

РасширениеTemplateplaza Com Tpdugg
Разработчикevilc0de.blogspot

SQL injection vulnerability in the TemplatePlaza.com TPDugg (com_tpdugg) component 1.1 for Joomla! allows remote attackers to execute arbitrary SQL commands via the id parameter in a tags a…

18.01.2010
Высокая CVSS 7.5

CVE-2009-4625

Разработчикosvdb

SQL injection vulnerability in the updateOnePage function in components/com_bfsurvey_pro/controller.php in BF Survey Pro Free (com_bfsurvey_profree) 1.2.4, and other versions before 1.2.6,…

18.01.2010
Высокая CVSS 7.5

CVE-2009-4620

РасширениеJoomloc Com Joomloc
Разработчикosvdb

SQL injection vulnerability in the Joomloc (com_joomloc) component 1.0 for Joomla allows remote attackers to execute arbitrary SQL commands via the id parameter in an edit task to index.php.

18.01.2010
Высокая CVSS 7.5

CVE-2009-4619

РасширениеLucygames Com Lucygames
Разработчикexploit-db

SQL injection vulnerability in the Lucy Games (com_lucygames) component 1.5.4 for Joomla! allows remote attackers to execute arbitrary SQL commands via the gameid parameter in a game action…

18.01.2010
Высокая CVSS 7.5

CVE-2010-0157

РасширениеJoomla Joomla\!
Разработчикpacketstormsecurity

Directory traversal vulnerability in the Bible Study (com_biblestudy) component 6.1 for Joomla! allows remote attackers to include and execute arbitrary local files via a .. (dot dot) in th…

06.01.2010
Высокая CVSS 7.5

CVE-2009-4583

РасширениеJoomla Com Dhforum
Разработчикpacketstormsecurity

SQL injection vulnerability in the DhForum (com_dhforum) component for Joomla! allows remote attackers to execute arbitrary SQL commands via the id parameter in a grouplist action to index.…

06.01.2010
Средняя CVSS 4.3

CVE-2009-4579

РасширениеJoomla Com Artistavenue
Разработчикpacketstormsecurity

Cross-site scripting (XSS) vulnerability in the Artist avenue (com_artistavenue) component for Joomla! and Mambo allows remote attackers to inject arbitrary web script or HTML via the Itemi…

06.01.2010
Средняя CVSS 4.3

CVE-2009-4578

РасширениеJoomla Joomla\!
Разработчикpacketstormsecurity

Cross-site scripting (XSS) vulnerability in the Facileforms (com_facileforms) component for Joomla! and Mambo allows remote attackers to inject arbitrary web script or HTML via the Itemid p…

06.01.2010
Высокая CVSS 7.5

CVE-2009-4576

РасширениеJoomla Joomla\!
Разработчикpacketstormsecurity

SQL injection vulnerability in the BeeHeard (com_beeheard) component 1.x for Joomla! allows remote attackers to execute arbitrary SQL commands via the category_id parameter in a suggestions…

06.01.2010
Средняя CVSS 4.3

CVE-2009-4575

РасширениеJoomla Joomla\!
Разработчикsecunia

Cross-site scripting (XSS) vulnerability in the Q-Personel (com_qpersonel) component 1.0.2 RC2 for Joomla! allows remote attackers to inject arbitrary web script or HTML via the personel_si…

06.01.2010
Высокая CVSS 7.5

CVE-2009-4550

РасширениеJoomla Joomla\!
Разработчикsecunia

SQL injection vulnerability in the Kunena Forum (com_kunena) component 1.5.3 and 1.5.4 for Joomla! allows remote attackers to execute arbitrary SQL commands via the func parameter to index.…

04.01.2010
Высокая CVSS 7.5

CVE-2009-4475

РасширениеJoomlub Com Joomlub
Разработчикpacketstormsecurity

SQL injection vulnerability in the Joomlub (com_joomlub) component for Joomla! allows remote attackers to execute arbitrary SQL commands via the aid parameter in an auction edit action to i…

30.12.2009
Высокая CVSS 7.5

CVE-2009-4431

РасширениеJoomla Joomla\!
Разработчикpacketstormsecurity

PHP remote file inclusion vulnerability in cal_popup.php in the Anything Digital Development JCal Pro (aka com_jcalpro or JCP) component 1.5.3.6 for Joomla! allows remote attackers to execu…

28.12.2009
Средняя CVSS 4.3

CVE-2009-4255

РасширениеJoomla Joomla\!
Разработчикsecunia

Cross-site scripting (XSS) vulnerability in the You!Hostit! template 1.0.1 for Joomla! allows remote attackers to inject arbitrary web script or HTML via the created_by_alias parameter in i…

10.12.2009
Средняя CVSS 4.3

CVE-2009-4233

РасширениеJoomla Joomla\!
Разработчикsecunia

Cross-site scripting (XSS) vulnerability in modules/mod_yj_whois.php in the YJ Whois component 1.0x and 1.5.x for Joomla! allows remote attackers to inject arbitrary web script or HTML via…

08.12.2009
Средняя CVSS 5.0

CVE-2009-4232

РасширениеJonijnm Com Kide
Разработчикsecunia

The Kide Shoutbox (com_kide) component 0.4.6 for Joomla! does not properly perform authentication, which allows remote attackers to post messages with an arbitrary account name via an inser…

08.12.2009
Высокая CVSS 7.5

CVE-2009-4217

РасширениеJoomla Joomla\!
Разработчикsecurityfocus

SQL injection vulnerability in the Itamar Elharar MusicGallery (com_musicgallery) component for Joomla! allows remote attackers to execute arbitrary SQL commands via the id parameter in an…

07.12.2009
Высокая CVSS 7.5

CVE-2009-4202

РасширениеJoomla Joomla\!
Разработчикexploit-db

Directory traversal vulnerability in the Omilen Photo Gallery (com_omphotogallery) component Beta 0.5 for Joomla! allows remote attackers to include and execute arbitrary local files via di…

04.12.2009