Каталог CVE

Разработчик: packetstormsecurity

Каталог

Все известные уязвимости

Статус «активна» означает, что запись опубликована в 2026 году. Он не заменяет проверку версии и официального исправления.

Сбросить

Найдено: 184

Разработчик: packetstormsecurity
Высокая CVSS 7.5

CVE-2009-4604

РасширениеFernando Soares Com Mamboleto
Разработчикpacketstormsecurity

PHP remote file inclusion vulnerability in mamboleto.php in the Fernando Soares Mamboleto (com_mamboleto) component 2.0 RC3 for Joomla! allows remote attackers to execute arbitrary PHP code…

12.01.2010
Высокая CVSS 7.5

CVE-2009-4599

РасширениеJoomshark Com Jsjobs
Разработчикpacketstormsecurity

Multiple SQL injection vulnerabilities in the JS Jobs (com_jsjobs) component 1.0.5.6 for Joomla! allow remote attackers to execute arbitrary SQL commands via (1) the md parameter in an empl…

12.01.2010
Высокая CVSS 7.5

CVE-2010-0158

РасширениеJoomlabamboo Jb Simpla
Разработчикpacketstormsecurity

SQL injection vulnerability in the JoomlaBamboo (JB) Simpla Admin template for Joomla! allows remote attackers to execute arbitrary SQL commands via the id parameter in an article action to…

06.01.2010
Высокая CVSS 7.5

CVE-2010-0157

РасширениеJoomla Joomla\!
Разработчикpacketstormsecurity

Directory traversal vulnerability in the Bible Study (com_biblestudy) component 6.1 for Joomla! allows remote attackers to include and execute arbitrary local files via a .. (dot dot) in th…

06.01.2010
Высокая CVSS 7.5

CVE-2009-4583

РасширениеJoomla Com Dhforum
Разработчикpacketstormsecurity

SQL injection vulnerability in the DhForum (com_dhforum) component for Joomla! allows remote attackers to execute arbitrary SQL commands via the id parameter in a grouplist action to index.…

06.01.2010
Средняя CVSS 4.3

CVE-2009-4579

РасширениеJoomla Com Artistavenue
Разработчикpacketstormsecurity

Cross-site scripting (XSS) vulnerability in the Artist avenue (com_artistavenue) component for Joomla! and Mambo allows remote attackers to inject arbitrary web script or HTML via the Itemi…

06.01.2010
Средняя CVSS 4.3

CVE-2009-4578

РасширениеJoomla Joomla\!
Разработчикpacketstormsecurity

Cross-site scripting (XSS) vulnerability in the Facileforms (com_facileforms) component for Joomla! and Mambo allows remote attackers to inject arbitrary web script or HTML via the Itemid p…

06.01.2010
Высокая CVSS 7.5

CVE-2009-4576

РасширениеJoomla Joomla\!
Разработчикpacketstormsecurity

SQL injection vulnerability in the BeeHeard (com_beeheard) component 1.x for Joomla! allows remote attackers to execute arbitrary SQL commands via the category_id parameter in a suggestions…

06.01.2010
Высокая CVSS 7.5

CVE-2009-4475

РасширениеJoomlub Com Joomlub
Разработчикpacketstormsecurity

SQL injection vulnerability in the Joomlub (com_joomlub) component for Joomla! allows remote attackers to execute arbitrary SQL commands via the aid parameter in an auction edit action to i…

30.12.2009
Высокая CVSS 7.5

CVE-2009-4431

РасширениеJoomla Joomla\!
Разработчикpacketstormsecurity

PHP remote file inclusion vulnerability in cal_popup.php in the Anything Digital Development JCal Pro (aka com_jcalpro or JCP) component 1.5.3.6 for Joomla! allows remote attackers to execu…

28.12.2009
Средняя CVSS 4.3

CVE-2009-4168

РасширениеRoytanck Wp-cumulus
Разработчикpacketstormsecurity

Cross-site scripting (XSS) vulnerability in Roy Tanck tagcloud.swf, as used in the WP-Cumulus plugin before 1.23 for WordPress and the Joomulus module 2.0 and earlier for Joomla!, allows re…

02.12.2009
Высокая CVSS 7.5

CVE-2009-3835

РасширениеWhorl Ltd Jshop
Разработчикpacketstormsecurity

SQL injection vulnerability in the JShop (com_jshop) component for Joomla! allows remote attackers to execute arbitrary SQL commands via the pid parameter in a product action to index.php.

02.11.2009
Высокая CVSS 7.5

CVE-2009-3834

РасширениеWebguerilla Com Photoblog
Разработчикpacketstormsecurity

SQL injection vulnerability in the Photoblog (com_photoblog) component alpha 3 and alpha 3a for Joomla! allows remote attackers to execute arbitrary SQL commands via the category parameter…

02.11.2009
Высокая CVSS 7.5

CVE-2009-3645

РасширениеJoomla Joomla\!
Разработчикpacketstormsecurity

SQL injection vulnerability in the JoomlaCache CB Resume Builder (com_cbresumebuilder) component for Joomla! allows remote attackers to execute arbitrary SQL commands via the group_id param…

09.10.2009
Высокая CVSS 7.5

CVE-2009-3644

РасширениеJoomla Joomla\!
Разработчикpacketstormsecurity

SQL injection vulnerability in the Soundset (com_soundset) component 1.0 for Joomla! allows remote attackers to execute arbitrary SQL commands via the cat_id parameter to index.php.

09.10.2009
Высокая CVSS 7.5

CVE-2009-3491

РасширениеJoomla Joomla\!
Разработчикpacketstormsecurity

SQL injection vulnerability in the Kinfusion SportFusion (com_sportfusion) component 0.2.2 through 0.2.3 for Joomla! allows remote attackers to execute arbitrary SQL commands via the cid[0]…

30.09.2009
Высокая CVSS 7.5

CVE-2009-3443

Разработчикpacketstormsecurity

SQL injection vulnerability in the Fastball (com_fastball) component 1.1.0 through 1.2 for Joomla! allows remote attackers to execute arbitrary SQL commands via the league parameter to inde…

28.09.2009