Каталог CVE

Разработчик: joomla

Каталог

Все известные уязвимости

Статус «активна» означает, что запись опубликована в 2026 году. Он не заменяет проверку версии и официального исправления.

Сбросить

Найдено: 103

Разработчик: joomla
Высокая CVSS 7.5

CVE-2014-7984

РасширениеJoomla Joomla\!
Разработчикjoomla

Joomla! CMS 2.5.x before 2.5.19 and 3.x before 3.2.3 allows remote attackers to authenticate and bypass intended restrictions via vectors involving GMail authentication.

08.10.2014
Средняя CVSS 4.3

CVE-2014-7983

РасширениеJoomla Joomla\!
Разработчикjoomla

Cross-site scripting (XSS) vulnerability in com_contact in Joomla! CMS 3.1.2 through 3.2.x before 3.2.3 allows remote attackers to inject arbitrary web script or HTML via unspecified vector…

08.10.2014
Средняя CVSS 4.3

CVE-2014-7982

РасширениеJoomla Joomla\!
Разработчикjoomla

Cross-site scripting (XSS) vulnerability in Joomla! CMS 2.5.x before 2.5.19 and 3.x before 3.2.3 allows remote attackers to inject arbitrary web script or HTML via unspecified vectors.

08.10.2014
Высокая CVSS 7.5

CVE-2014-7981

РасширениеJoomla Joomla\!
Разработчикjoomla

SQL injection vulnerability in Joomla! CMS 3.1.x and 3.2.x before 3.2.3 allows remote attackers to execute arbitrary SQL commands via unspecified vectors.

08.10.2014
Средняя CVSS 5.0

CVE-2014-7229

РасширениеJoomla Joomla\!
Разработчикjoomla

Unspecified vulnerability in Joomla! before 2.5.4 before 2.5.26, 3.x before 3.2.6, and 3.3.x before 3.3.5 allows attackers to cause a denial of service via unspecified vectors.

08.10.2014
Высокая CVSS 7.5

CVE-2014-6632

РасширениеJoomla Joomla\!
Разработчикjoomla

Joomla! 2.5.x before 2.5.25, 3.x before 3.2.4, and 3.3.x before 3.3.4 allows remote attackers to authenticate and bypass intended access restrictions via vectors involving LDAP authenticati…

08.10.2014
Средняя CVSS 4.3

CVE-2014-6631

РасширениеJoomla Joomla\!
Разработчикjoomla

Cross-site scripting (XSS) vulnerability in com_media in Joomla! 3.2.x before 3.2.5 and 3.3.x before 3.3.4 allows remote attackers to inject arbitrary web script or HTML via unspecified vec…

08.10.2014
Средняя CVSS 4.3

CVE-2013-5952

РасширениеCodologic Com Freichat
Разработчикjoomla

Multiple cross-site scripting (XSS) vulnerabilities in the Freichat (com_freichat) component, possibly 9.4 and earlier, for Joomla! allow remote attackers to inject arbitrary web script or…

19.03.2014
Высокая CVSS 7.5

CVE-2010-2681

РасширениеJoomla Com Sef
Разработчикjoomla

PHP remote file inclusion vulnerability in the SEF404x (com_sef) component for Joomla! allows remote attackers to execute arbitrary PHP code via a URL in the mosConfig.absolute.path paramet…

12.07.2010
Средняя CVSS 6.8

CVE-2010-2680

Разработчикjoomla

Directory traversal vulnerability in the JExtensions JE Section/Property Finder (jesectionfinder) component for Joomla! allows remote attackers to include and execute arbitrary local files…

12.07.2010
Высокая CVSS 7.5

CVE-2010-2679

РасширениеJoomla Com Weblinks
Разработчикjoomla

SQL injection vulnerability in the Weblinks (com_weblinks) component in Joomla! allows remote attackers to execute arbitrary SQL commands via the id parameter in a view action to index.php.

08.07.2010
Высокая CVSS 7.5

CVE-2010-2678

РасширениеGuillermo Vargas Com Xmap
Разработчикjoomla

SQL injection vulnerability in xmap (com_xmap) component for Joomla! allows remote attackers to execute arbitrary SQL commands via the Itemid parameter to index.php.

08.07.2010
Высокая CVSS 7.5

CVE-2010-2622

РасширениеJoomanager Joomanager
Разработчикjoomla

SQL injection vulnerability in the Joomanager component, possibly 1.1.1, for Joomla! allows remote attackers to execute arbitrary SQL commands via the catid parameter to index.php.

02.07.2010
Средняя CVSS 4.3

CVE-2010-2613

РасширениеHarmistechnology Com Awd Song
Разработчикjoomla

Cross-site scripting (XSS) vulnerability in the JExtensions JE Awd Song (com_awd_song) component for Joomla! allows remote attackers to inject arbitrary web script or HTML via the song revi…

02.07.2010
Высокая CVSS 7.5

CVE-2010-1522

РасширениеOrdasoft Com Booklibrary
Разработчикjoomla

Multiple SQL injection vulnerabilities in the BookLibrary Basic (com_booklibrary) component 1.5.3 before 1.5.3_2010_06_20 for Joomla! allow remote attackers to execute arbitrary SQL command…

02.07.2010
Средняя CVSS 6.8

CVE-2010-2515

РасширениеDacian Strain Com Jfaq
Разработчикjoomla

Multiple SQL injection vulnerabilities in index.php in the JFaq (com_jfaq) component 1.2 for Joomla!, when magic_quotes_gpc is disabled, allow (1) remote attackers to execute arbitrary SQL…

28.06.2010
Средняя CVSS 4.3

CVE-2010-2514

РасширениеDacian Strain Com Jfaq
Разработчикjoomla

Cross-site scripting (XSS) vulnerability in the JFaq (com_jfaq) component 1.2 for Joomla! allows remote attackers to inject arbitrary web script or HTML via the question parameter in an add…

28.06.2010
Высокая CVSS 7.5

CVE-2010-2513

Разработчикjoomla

SQL injection vulnerability in the JE Ajax Event Calendar (com_jeajaxeventcalendar) component 1.0.5 for Joomla! allows remote attackers to execute arbitrary SQL commands via the view parame…

28.06.2010