Каталог CVE

Разработчик: secunia

Каталог

Все известные уязвимости

Статус «активна» означает, что запись опубликована в 2026 году. Он не заменяет проверку версии и официального исправления.

Сбросить

Найдено: 154

Разработчик: secunia
Высокая CVSS 7.5

CVE-2009-3154

РасширениеJoomla Joomla
Разработчикsecunia

SQL injection vulnerability in the Almond Classifieds (com_aclassf) component 7.5 for Joomla! allows remote attackers to execute arbitrary SQL commands via the replid parameter in a manw_re…

10.09.2009
Высокая CVSS 7.5

CVE-2008-6883

РасширениеJoomla Joomla
Разработчикsecunia

SQL injection vulnerability in the Live Chat (com_livechat) component 1.0 for Joomla! allows remote attackers to execute arbitrary SQL commands via the last parameter to getChatRoom.php. NO…

30.07.2009
Высокая CVSS 7.5

CVE-2008-6881

РасширениеJoompolitan Com Livechat
Разработчикsecunia

Multiple SQL injection vulnerabilities in the Live Chat (com_livechat) component 1.0 for Joomla! allow remote attackers to execute arbitrary SQL commands via the last parameter to (1) getCh…

30.07.2009
Средняя CVSS 6.8

CVE-2009-2554

РасширениеJoomla Joomla
Разработчикsecunia

SQL injection vulnerability in the search method in jobline.class.php in Jobline (com_jobline) 1.1.2.2, 1.3.1, and possibly earlier versions, a component for Joomla!, allows remote attacker…

20.07.2009
Высокая CVSS 7.5

CVE-2009-2390

РасширениеJoomla Joomla
Разработчикsecunia

SQL injection vulnerability in the BookFlip (com_bookflip) component 2.1 for Joomla! allows remote attackers to execute arbitrary SQL commands via the book_id parameter to index.php.

09.07.2009
Высокая CVSS 7.5

CVE-2009-2015

РасширениеJoomla Joomla
Разработчикsecunia

Directory traversal vulnerability in includes/file_includer.php in the Ideal MooFAQ (com_moofaq) component 1.0 for Joomla! allows remote attackers to read arbitrary files via a .. (dot dot)…

09.06.2009
Высокая CVSS 7.5

CVE-2008-6337

РасширениеJoomlaapps Com Volunteer
Разработчикsecunia

SQL injection vulnerability in the Volunteer Management System (com_volunteer) module 2.0 for Joomla! allows remote attackers to execute arbitrary SQL commands via the job_id parameter in a…

27.02.2009
Средняя CVSS 5.0

CVE-2008-6222

Разработчикsecunia

Directory traversal vulnerability in the Pro Desk Support Center (com_pro_desk) component 1.0 and 1.2 for Joomla! allows remote attackers to read arbitrary files via a .. (dot dot) in the i…

20.02.2009
Высокая CVSS 7.5

CVE-2008-6221

Разработчикsecunia

PHP remote file inclusion vulnerability in config.dadamail.php in the Dada Mail Manager (com_dadamail) component 2.6 for Joomla! allows remote attackers to execute arbitrary PHP code via a…

20.02.2009
Высокая CVSS 7.5

CVE-2008-6184

РасширениеMedialab-karlsruhe Ownbiblio
Разработчикsecunia

SQL injection vulnerability in the OwnBiblio (com_ownbiblio) component 1.5.3 for Joomla! allows remote attackers to execute arbitrary SQL commands via the catid parameter in a catalogue act…

19.02.2009
Высокая CVSS 7.5

CVE-2008-6182

РасширениеJoomla Ignitegallery
Разработчикsecunia

SQL injection vulnerability in the Ignite Gallery (com_ignitegallery) component 0.8.0 through 0.8.3 for Joomla! allows remote attackers to execute arbitrary SQL commands via the gallery par…

19.02.2009
Высокая CVSS 7.5

CVE-2008-6181

РасширениеJoomla Joomla
Разработчикsecunia

SQL injection vulnerability in the Mad4Joomla Mailforms (com_mad4joomla) component before 1.1.8.2 for Joomla! allows remote attackers to execute arbitrary SQL commands via the jid parameter…

19.02.2009
Средняя CVSS 6.8

CVE-2008-6172

РасширениеWeberr Rwcards
Разработчикsecunia

Directory traversal vulnerability in captcha/captcha_image.php in the RWCards (com_rwcards) 3.0.11 component for Joomla!, when magic_quotes_gpc is disabled, allows remote attackers to inclu…

19.02.2009
Высокая CVSS 7.5

CVE-2008-6166

РасширениеJoomla Joomla
Разработчикsecunia

SQL injection vulnerability in the KBase (com_kbase) 1.2 component for Joomla! allows remote attackers to execute arbitrary SQL commands via the id parameter in an article action to index.p…

19.02.2009
Высокая CVSS 7.5

CVE-2008-6149

РасширениеJoomlaapps Com Mdigg
Разработчикsecunia

SQL injection vulnerability in the mDigg (com_mdigg) component 2.2.8 for Joomla! allows remote attackers to execute arbitrary SQL commands via the cagtegory parameter in a story_lists actio…

16.02.2009
Высокая CVSS 7.5

CVE-2008-6148

РасширениеRaven-worx Liveticker
Разработчикsecunia

SQL injection vulnerability in the Live Ticker (com_liveticker) module 1.0 for Joomla! allows remote attackers to execute arbitrary SQL commands via the tid parameter in a viewticker action…

16.02.2009
Высокая CVSS 7.5

CVE-2008-6068

РасширениеWeb Design Hero Joomladate
Разработчикsecunia

SQL injection vulnerability in the JoomlaDate (com_joomladate) component 1.2 for Joomla! allows remote attackers to execute arbitrary SQL commands via the user parameter in a viewProfile ac…

10.02.2009
Средняя CVSS 5.0

CVE-2008-6080

РасширениеCodecall Com Ionfiles
Разработчикsecunia

Directory traversal vulnerability in download.php in the ionFiles (com_ionfiles) 4.4.2 component for Joomla! allows remote attackers to read arbitrary files via a .. (dot dot) in the file p…

06.02.2009