Каталог CVE

Разработчик: exploit-db

Каталог

Все известные уязвимости

Статус «активна» означает, что запись опубликована в 2026 году. Он не заменяет проверку версии и официального исправления.

Сбросить

Найдено: 132

Разработчик: exploit-db
Высокая CVSS 8.8

CVE-2018-25330

Разработчикexploit-db

Joomla! extension EkRishta 2.10 contains persistent cross-site scripting and SQL injection vulnerabilities that allow attackers to inject malicious code through profile fields and POST para…

17.05.2026 Требует внимания
Средняя CVSS 6.9

CVE-2018-25327

Разработчикexploit-db

Joomla! Component Js Jobs 1.2.0 contains a cross-site request forgery vulnerability that allows attackers to perform state-changing actions without token validation. Attackers can craft mal…

17.05.2026 Активна
Высокая CVSS 8.8

CVE-2020-37218

Разработчикexploit-db

Joomla com_hdwplayer 4.2 contains an SQL injection vulnerability in the search.php file that allows unauthenticated attackers to execute arbitrary SQL queries by injecting malicious code th…

13.05.2026 Требует внимания
Критическая CVSS 9.8

CVE-2018-17386

Разработчикexploit-db

SQL Injection exists in the Micro Deal Factory 2.4.0 component for Joomla! via the id parameter, or the PATH_INFO to mydeals/ or listdeals/.

19.06.2019
Критическая CVSS 9.8

CVE-2018-17398

РасширениеArenam Amgallery
Разработчикexploit-db

SQL Injection exists in the AMGallery 1.2.3 component for Joomla! via the filter_category_id parameter.

19.06.2019
Высокая CVSS 7.8

CVE-2018-10063

Разработчикexploit-db

The Convert Forms extension before 2.0.4 for Joomla! is vulnerable to Remote Command Execution using CSV Injection that is mishandled when exporting a Leads file.

12.04.2018
Высокая CVSS 7.5

CVE-2018-7482

РасширениеJoomlaworks K2
Разработчикexploit-db

The K2 component 2.8.0 for Joomla! has Incorrect Access Control with directory traversal, allowing an attacker to download arbitrary files, as demonstrated by a view=media&task=connector&cm…

28.02.2018
Критическая CVSS 9.8

CVE-2018-7318

РасширениеBelitsoft Checklist
Разработчикexploit-db

SQL Injection exists in the CheckList 1.1.1 component for Joomla! via the title_search, tag_search, name_search, description_search, or filter_order parameter.

22.02.2018
Критическая CVSS 9.8

CVE-2018-7315

РасширениеHarmistechnology Ek Rishta
Разработчикexploit-db

SQL Injection exists in the Ek Rishta 2.9 component for Joomla! via the gender, age1, age2, religion, mothertounge, caste, or country parameter.

22.02.2018
Критическая CVSS 9.8

CVE-2018-7314

РасширениеMlwebtechnologies Prayercenter
Разработчикexploit-db

SQL Injection exists in the PrayerCenter 3.0.2 component for Joomla! via the sessionid parameter, a different vulnerability than CVE-2008-6429.

22.02.2018
Критическая CVSS 9.8

CVE-2018-7313

РасширениеCwjoomla Cw Tags
Разработчикexploit-db

SQL Injection exists in the CW Tags 2.0.6 component for Joomla! via the searchtext array parameter.

22.02.2018