Каталог CVE

Разработчик: cert.pl

Каталог

Все известные уязвимости

Статус «активна» означает, что запись опубликована в 2026 году. Он не заменяет проверку версии и официального исправления.

Сбросить

Найдено: 3

Разработчик: cert.pl
Средняя CVSS 6.3

CVE-2024-5737

Разработчикcert.pl

Script afGdStream.php in AdmirorFrames Joomla! extension doesn’t specify a content type and as a result default (text/html) is used. An attacker may embed HTML tags directly in image data w…

28.06.2024
Высокая CVSS 8.2

CVE-2024-5736

Разработчикcert.pl

Server Side Request Forgery (SSRF) vulnerability in AdmirorFrames Joomla! extension in afGdStream.php script allows to access local files or server pages available only from localhost. This…

28.06.2024
Средняя CVSS 6.3

CVE-2024-5735

Разработчикcert.pl

Full Path Disclosure vulnerability in AdmirorFrames Joomla! extension in afHelper.php script allows an unauthorised attacker to retrieve location of web root folder. This issue affects Admi…

28.06.2024