Каталог CVE

Разработчик: exploit-db

Каталог

Все известные уязвимости

Статус «активна» означает, что запись опубликована в 2026 году. Он не заменяет проверку версии и официального исправления.

Сбросить

Найдено: 132

Разработчик: exploit-db
Критическая CVSS 9.8

CVE-2018-5991

РасширениеWeb-dorado Form Maker
Разработчикexploit-db

SQL Injection exists in the Form Maker 3.6.12 component for Joomla! via the id, from, or to parameter in a view=stats request, a different vulnerability than CVE-2015-2798.

17.02.2018
Критическая CVSS 9.8

CVE-2018-5989

РасширениеChillcreations Ccnewsletter
Разработчикexploit-db

SQL Injection exists in the ccNewsletter 2.x component for Joomla! via the id parameter in a task=removeSubscriber action, a related issue to CVE-2011-5099.

17.02.2018
Критическая CVSS 9.8

CVE-2018-5987

Разработчикexploit-db

SQL Injection exists in the Pinterest Clone Social Pinboard 2.0 component for Joomla! via the pin_id or user_id parameter in a task=getlikeinfo action, the ends parameter in a view=gift act…

17.02.2018
Критическая CVSS 9.8

CVE-2018-5982

РасширениеOrdasoft Advertisement Board
Разработчикexploit-db

SQL Injection exists in the Advertisement Board 3.1.0 component for Joomla! via a task=show_rss_categories&catname= request.

17.02.2018
Критическая CVSS 9.8

CVE-2018-5981

РасширениеWeb-dorado Gallery Wd
Разработчикexploit-db

SQL Injection exists in the Gallery WD 1.3.6 component for Joomla! via the tag_id parameter or gallery_id parameter.

17.02.2018
Критическая CVSS 9.8

CVE-2018-5980

РасширениеSolidres Solidres
Разработчикexploit-db

SQL Injection exists in the Solidres 2.5.1 component for Joomla! via the direction parameter in a hub.search action.

17.02.2018
Критическая CVSS 9.8

CVE-2018-5975

РасширениеThekrotek Smart Shoutbox
Разработчикexploit-db

SQL Injection exists in the Smart Shoutbox 3.0.0 component for Joomla! via the shoutauthor parameter to the archive URI.

17.02.2018
Критическая CVSS 9.8

CVE-2018-5974

РасширениеAlbonico Simplecalendar
Разработчикexploit-db

SQL Injection exists in the SimpleCalendar 3.1.9 component for Joomla! via the catid array parameter.

17.02.2018
Критическая CVSS 9.8

CVE-2018-5971

РасширениеOrdasoft Medialibrary
Разработчикexploit-db

SQL Injection exists in the MediaLibrary Free 4.0.12 component for Joomla! via the id parameter or the mid array parameter.

17.02.2018
Критическая CVSS 9.8

CVE-2018-5970

РасширениеTechjoomla Jgive
Разработчикexploit-db

SQL Injection exists in the JGive 2.0.9 component for Joomla! via the filter_org_ind_type or campaign_countries parameter.

17.02.2018
Высокая CVSS 7.5

CVE-2018-6610

РасширениеJlike Project Jlike
Разработчикexploit-db

Information Leakage exists in the jLike 1.0 component for Joomla! via a task=getUserByCommentId request.

05.02.2018
Критическая CVSS 9.8

CVE-2018-6609

Разработчикexploit-db

SQL Injection exists in the JSP Tickets 1.1 component for Joomla! via the ticketcode parameter in a ticketlist edit action, or the id parameter in a statuslist (or prioritylist) edit action.

05.02.2018
Критическая CVSS 9.8

CVE-2018-6605

Разработчикexploit-db

SQL Injection exists in the Zh BaiduMap 3.0.0.1 component for Joomla! via the id parameter in a getPlacemarkDetails, getPlacemarkHoverText, getPathHoverText, or getPathDetails request.

05.02.2018
Критическая CVSS 9.8

CVE-2018-6582

Разработчикexploit-db

SQL Injection exists in the Zh GoogleMap 8.4.0.0 component for Joomla! via the id parameter in a getPlacemarkDetails, getPlacemarkHoverText, getPathHoverText, or getPathDetails request.

05.02.2018
Критическая CVSS 9.8

CVE-2018-6581

РасширениеJoommasters Jms Music
Разработчикexploit-db

SQL Injection exists in the JMS Music 1.1.1 component for Joomla! via a search with the keyword, artist, or username parameter.

02.02.2018