Каталог CVE

Разработчик: exploit-db

Каталог

Все известные уязвимости

Статус «активна» означает, что запись опубликована в 2026 году. Он не заменяет проверку версии и официального исправления.

Сбросить

Найдено: 132

Разработчик: exploit-db
Критическая CVSS 9.8

CVE-2018-6580

РасширениеJanguo Jimtawl
Разработчикexploit-db

Arbitrary file upload exists in the Jimtawl 2.1.6 and 2.2.5 component for Joomla! via a view=upload&task=upload&pop=true&tmpl=component request.

02.02.2018
Критическая CVSS 9.8

CVE-2018-6579

РасширениеJextn Reverse Auction
Разработчикexploit-db

SQL Injection exists in the JEXTN Reverse Auction 3.1.0 component for Joomla! via a view=products&uid= request.

02.02.2018
Критическая CVSS 9.8

CVE-2018-6578

РасширениеJextn Je Paypervideo
Разработчикexploit-db

SQL Injection exists in the JE PayperVideo 3.0.0 component for Joomla! via the usr_plan parameter in a view=myplans&task=myplans.usersubscriptions request.

02.02.2018
Критическая CVSS 9.8

CVE-2018-6577

РасширениеJextn Membership
Разработчикexploit-db

SQL Injection exists in the JEXTN Membership 3.1.0 component for Joomla! via the usr_plan parameter in a view=myplans&task=myplans.usersubscriptions request.

02.02.2018
Критическая CVSS 9.8

CVE-2018-6575

РасширениеJextn Classified
Разработчикexploit-db

SQL Injection exists in the JEXTN Classified 1.0.0 component for Joomla! via a view=boutique&sid= request.

02.02.2018
Критическая CVSS 9.8

CVE-2018-5985

РасширениеLivecrm Livecrm Saas Cloud
Разработчикexploit-db

SQL Injection exists in the LiveCRM SaaS Cloud 1.0 component for Joomla! via an r=site/login&company_id= request.

24.01.2018
Критическая CVSS 9.8

CVE-2018-5984

РасширениеTumder Project Tumder
Разработчикexploit-db

SQL Injection exists in the Tumder (An Arcade Games Platform) 2.1 component for Joomla! via the PATH_INFO to the category/ URI.

24.01.2018
Критическая CVSS 9.8

CVE-2017-17875

РасширениеJextn Jextn Faq Pro
Разработчикexploit-db

The JEXTN FAQ Pro extension 4.0.0 for Joomla! has SQL Injection via the id parameter in a view=category action.

27.12.2017
Критическая CVSS 9.8

CVE-2017-17872

РасширениеJextn Jextn Video Gallery
Разработчикexploit-db

The JEXTN Video Gallery extension 3.0.5 for Joomla! has SQL Injection via the id parameter in a view=category action.

27.12.2017
Критическая CVSS 9.8

CVE-2017-17871

Разработчикexploit-db

The "JEXTN Question And Answer" extension 3.1.0 for Joomla! has SQL Injection via the an parameter in a view=tags action, or the ques-srch parameter.

27.12.2017
Средняя CVSS 4.3

CVE-2014-0794

РасширениеJoomla Com Jvcomment
Разработчикexploit-db

SQL injection vulnerability in the JV Comment (com_jvcomment) component before 3.0.3 for Joomla! allows remote authenticated users to execute arbitrary SQL commands via the id parameter in…

26.01.2014
Высокая CVSS 7.5

CVE-2010-5022

РасширениеHarmistechnology Com Jesubmit
Разработчикexploit-db

SQL injection vulnerability in the JExtensions JE Story Submit (com_jesubmit) component 1.4 for Joomla! allows remote attackers to execute arbitrary SQL commands via the view parameter to i…

02.11.2011
Высокая CVSS 7.5

CVE-2010-4991

РасширениеNinjaforge Ninjamonials
Разработчикexploit-db

SQL injection vulnerability in the NinjaMonials (com_ninjamonials) component for Joomla! allows remote attackers to execute arbitrary SQL commands via the Itemid parameter in a display acti…

01.11.2011
Высокая CVSS 7.5

CVE-2010-4990

РасширениеB-elektro Com Addressbook
Разработчикexploit-db

SQL injection vulnerability in the Front-edit Address Book (com_addressbook) component for Joomla! allows remote attackers to execute arbitrary SQL commands via the Itemid parameter in a co…

01.11.2011
Высокая CVSS 7.5

CVE-2010-4975

РасширениеTechjoomla Com Socialads
Разработчикexploit-db

SQL injection vulnerability in the Techjoomla SocialAds For JomSocial (com_socialads) component for Joomla! allows remote attackers to execute arbitrary SQL commands via the ads description…

01.11.2011