Каталог CVE

Разработчик: securityfocus

Каталог

Все известные уязвимости

Статус «активна» означает, что запись опубликована в 2026 году. Он не заменяет проверку версии и официального исправления.

Сбросить

Найдено: 137

Разработчик: securityfocus
Высокая CVSS 7.5

CVE-2009-3342

РасширениеJoomla Joomla\!
Разработчикsecurityfocus

SQL injection vulnerability in frontend/assets/ajax/checkusername.php in the AlphaUserPoints (com_alphauserpoints) component 1.5.2 for Joomla! allows remote attackers to execute arbitrary S…

24.09.2009
Высокая CVSS 7.5

CVE-2008-7169

РасширениеJabode Com Jabode
Разработчикsecurityfocus

SQL injection vulnerability in Jabode horoscope extension (com_jabode) for Joomla! allows remote attackers to execute arbitrary SQL commands via the id parameter in a sign task to index.php.

08.09.2009
Высокая CVSS 7.5

CVE-2009-2789

РасширениеJoomla Joomla
Разработчикsecurityfocus

SQL injection vulnerability in the Permis (com_groups) component 1.0 for Joomla! allows remote attackers to execute arbitrary SQL commands via the id parameter in a list action to index.php…

17.08.2009
Высокая CVSS 7.5

CVE-2008-6882

РасширениеJoomla Joomla
Разработчикsecurityfocus

Live Chat (com_livechat) component 1.0 for Joomla! allows remote attackers to use the xmlhttp.php script as an open HTTP proxy to hide network scanning activities or scan internal networks…

30.07.2009
Высокая CVSS 7.5

CVE-2008-6852

РасширениеJoomla Joomla\!
Разработчикsecurityfocus

SQL injection vulnerability in the Ice Gallery (com_ice) component 0.5 beta 2 for Joomla! allows remote attackers to execute arbitrary SQL commands via the catid parameter to index.php.

07.07.2009
Высокая CVSS 7.5

CVE-2009-2290

РасширениеJoomla Joomla\!
Разработчикsecurityfocus

SQL injection vulnerability in the Boy Scout Advancement (com_bsadv) component 0.3 and earlier for Joomla! allows remote attackers to execute arbitrary SQL commands via the id parameter in…

01.07.2009
Высокая CVSS 7.5

CVE-2008-6841

РасширениеJoomla Joomla
Разработчикsecurityfocus

PHP remote file inclusion vulnerability in the Green Mountain Information Technology and Consulting Database Query (com_dbquery) component 1.4.1.1 and earlier for Joomla! allows remote atta…

01.07.2009
Высокая CVSS 7.5

CVE-2009-2014

РасширениеJoomla Joomla
Разработчикsecurityfocus

SQL injection vulnerability in the ComSchool (com_school) component 1.4 for Joomla! allows remote attackers to execute arbitrary SQL commands via the classid parameter in a showclass action…

09.06.2009
Высокая CVSS 7.5

CVE-2009-1848

РасширениеJoomlame Com Agoragroup
Разработчикsecurityfocus

SQL injection vulnerability in the JoomlaMe AgoraGroups (aka AG or com_agoragroup) component 0.3.5.3 for Joomla! allows remote attackers to execute arbitrary SQL commands via the id paramet…

01.06.2009
Высокая CVSS 7.5

CVE-2009-1822

РасширениеJoomla Joomla\!
Разработчикsecurityfocus

Multiple PHP remote file inclusion vulnerabilities in the InterJoomla ArtForms (com_artforms) component 2.1b7 for Joomla! allow remote attackers to execute arbitrary PHP code via a URL in t…

29.05.2009
Высокая CVSS 7.5

CVE-2009-1736

РасширениеJoomla Joomla\!
Разработчикsecurityfocus

SQL injection vulnerability in the GridSupport (GS) Ticket System (com_gsticketsystem) component for Joomla! allows remote attackers to execute arbitrary SQL commands via the catid paramete…

20.05.2009
Высокая CVSS 7.5

CVE-2009-1499

РасширениеJoomla Joomla\!
Разработчикsecurityfocus

SQL injection vulnerability in the MailTo (aka com_mailto) component in Joomla! allows remote attackers to execute arbitrary SQL commands via the article parameter in index.php. NOTE: Secur…

01.05.2009
Средняя CVSS 5.0

CVE-2009-1496

РасширениеJoomla Joomla
Разработчикsecurityfocus

Directory traversal vulnerability in the Cmi Marketplace (com_cmimarketplace) component 0.1 for Joomla! allows remote attackers to list arbitrary directories via a .. (dot dot) in the viewi…

01.05.2009
Высокая CVSS 7.5

CVE-2008-6489

РасширениеJoomla Joomla
Разработчикsecurityfocus

SQL injection vulnerability in MyAlbum component (com_myalbum) 1.0 for Joomla! allows remote attackers to execute arbitrary SQL commands via the album parameter to index.php.

19.03.2009
Высокая CVSS 7.5

CVE-2008-6481

РасширениеJoomla Joomla
Разработчикsecurityfocus

SQL injection vulnerability in the Versioning component (com_versioning) 1.0.2 in Joomla! and Mambo allows remote attackers to execute arbitrary SQL commands via the id parameter in an edit…

17.03.2009
Высокая CVSS 7.5

CVE-2008-6347

РасширениеJoomla Joomla
Разработчикsecurityfocus

PHP remote file inclusion vulnerability in lib/onguma.class.php in the Onguma Time Sheet (com_ongumatimesheet20) 2.0 4b component for Joomla! allows remote attackers to execute arbitrary PH…

02.03.2009
Средняя CVSS 6.8

CVE-2009-0730

РасширениеGigcalendar Com Gigcalendar
Разработчикsecurityfocus

Multiple SQL injection vulnerabilities in the GigCalendar (com_gigcal) component 1.0 for Mambo and Joomla!, when magic_quotes_gpc is disabled, allow remote attackers to execute arbitrary SQ…

24.02.2009
Высокая CVSS 7.5

CVE-2009-0726

РасширениеGigcalendar Com Gigcalendar
Разработчикsecurityfocus

SQL injection vulnerability in the GigCalendar (com_gigcal) component 1.0 for Mambo and Joomla! allows remote attackers to execute arbitrary SQL commands via the gigcal_gigs_id parameter in…

24.02.2009