Каталог CVE

Разработчик: joomlacode

Каталог

Все известные уязвимости

Статус «активна» означает, что запись опубликована в 2026 году. Он не заменяет проверку версии и официального исправления.

Сбросить

Найдено: 8

Разработчик: joomlacode
Средняя CVSS 5.0

CVE-2012-4235

РасширениеRsgallery2 Com Rsgallery2
Разработчикjoomlacode

The RSGallery2 (com_rsgallery2) component before 3.2.0 for Joomla! 2.5.x does not place index.html files in image directories, which allows remote attackers to list image filenames via a re…

10.08.2012
Средняя CVSS 4.3

CVE-2012-4071

РасширениеRsgallery2 Com Rsgallery2
Разработчикjoomlacode

Cross-site scripting (XSS) vulnerability in the comments module in the RSGallery2 (com_rsgallery2) component before 2.3.0 for Joomla! 1.5.x, and before 3.2.0 for Joomla! 2.5.x, allows remot…

10.08.2012
Высокая CVSS 7.5

CVE-2012-3554

РасширениеRsgallery2 Com Rsgallery2
Разработчикjoomlacode

SQL injection vulnerability in the RSGallery2 (com_rsgallery2) component before 2.3.0 for Joomla! 1.5.x, and before 3.2.0 for Joomla! 2.5.x, allows remote attackers to execute arbitrary SQL…

10.08.2012
Высокая CVSS 7.5

CVE-2010-1559

РасширениеMartin Hess Com Sermonspeaker
Разработчикjoomlacode

SQL injection vulnerability in the SermonSpeaker (com_sermonspeaker) component before 3.2.1 for Joomla! allows remote attackers to execute arbitrary SQL commands via the id parameter in a s…

27.04.2010
Высокая CVSS 7.5

CVE-2010-1477

РасширениеMartin Hess Com Sermonspeaker
Разработчикjoomlacode

SQL injection vulnerability in the SermonSpeaker (com_sermonspeaker) component before 3.2.1 for Joomla! allows remote attackers to execute arbitrary SQL commands via the id parameter in a l…

19.04.2010
Высокая CVSS 7.5

CVE-2008-2643

РасширениеJoomla Com Biblestudy
Разработчикjoomlacode

SQL injection vulnerability in the Bible Study (com_biblestudy) component before 6.0.7c for Joomla! allows remote attackers to execute arbitrary SQL commands via the id parameter in a media…

10.06.2008
Средняя CVSS 4.3

CVE-2007-5577

РасширениеJoomla Joomla\!
Разработчикjoomlacode

Multiple cross-site scripting (XSS) vulnerabilities in Joomla! before 1.0.13 (aka Sunglow) allow remote attackers to inject arbitrary web script or HTML via the (1) Title or (2) Section Nam…

18.10.2007
Высокая CVSS 7.5

CVE-2007-4187

РасширениеJoomla Joomla
Разработчикjoomlacode

Multiple eval injection vulnerabilities in the com_search component in Joomla! 1.5 beta before RC1 (aka Mapya) allow remote attackers to execute arbitrary PHP code via PHP sequences in the…

08.08.2007