Каталог CVE

Разработчик: osvdb

Каталог

Все известные уязвимости

Статус «активна» означает, что запись опубликована в 2026 году. Он не заменяет проверку версии и официального исправления.

Сбросить

Найдено: 120

Разработчик: osvdb
Критическая CVSS 9.8

CVE-2014-8739

Разработчикosvdb

Unrestricted file upload vulnerability in server/php/UploadHandler.php in the jQuery File Upload Plugin 6.4.4 for jQuery, as used in the Creative Solutions Creative Contact Form (formerly S…

08.02.2020
Средняя CVSS 4.3

CVE-2015-1478

РасширениеCmsjunkie J-classifiedsmanager
Разработчикosvdb

Cross-site scripting (XSS) vulnerability in the CMSJunkie J-ClassifiedsManager component for Joomla! allows remote attackers to inject arbitrary web script or HTML via the view parameter to…

04.02.2015
Высокая CVSS 7.5

CVE-2015-1477

РасширениеCmsjunkie J-classifiedsmanager
Разработчикosvdb

SQL injection vulnerability in the CMSJunkie J-ClassifiedsManager component for Joomla! allows remote attackers to execute arbitrary SQL commands via the id parameter in a viewad task to cl…

04.02.2015
Средняя CVSS 4.3

CVE-2013-3933

РасширениеMaxxmarketing Joomshopping
Разработчикosvdb

Cross-site scripting (XSS) vulnerability in the JoomShopping (com_joomshopping) component before 4.3.1 for Joomla! allows remote attackers to inject arbitrary web script or HTML via the use…

11.02.2014
Средняя CVSS 4.3

CVE-2014-1837

РасширениеStackideas Komento
Разработчикosvdb

Cross-site scripting (XSS) vulnerability in the StackIdeas Komento (com_komento) component before 1.7.4 for Joomla! allows remote attackers to inject arbitrary web script or HTML via vector…

30.01.2014
Средняя CVSS 6.0

CVE-2012-2902

Разработчикosvdb

Unrestricted file upload vulnerability in editor/extensions/browser/file.php in the Joomla Content Editor (JCE) component before 2.1 for Joomla!, when chunking is set to greater than zero,…

21.05.2012
Высокая CVSS 7.5

CVE-2011-4570

РасширениеTakeaweb Com Timereturns
Разработчикosvdb

SQL injection vulnerability in the Time Returns (com_timereturns) component 2.0 and possibly earlier versions for Joomla! allows remote attackers to execute arbitrary SQL commands via the i…

29.11.2011
Средняя CVSS 6.0

CVE-2010-5044

РасширениеKanich Com Searchlog
Разработчикosvdb

SQL injection vulnerability in models/log.php in the Search Log (com_searchlog) component 3.1.0 for Joomla! allows remote authenticated users, with Public Back-end privileges, to execute ar…

02.11.2011
Средняя CVSS 6.0

CVE-2010-5043

Разработчикosvdb

SQL injection vulnerability in the DJ-ArtGallery (com_djartgallery) component 0.9.1 for Joomla! allows remote authenticated users to execute arbitrary SQL commands via the cid[] parameter i…

02.11.2011
Средняя CVSS 4.3

CVE-2010-5042

Разработчикosvdb

Cross-site scripting (XSS) vulnerability in the DJ-ArtGallery (com_djartgallery) component 0.9.1 for Joomla! allows remote attackers to inject arbitrary web script or HTML via the cid[] par…

02.11.2011
Высокая CVSS 7.5

CVE-2010-5032

РасширениеTamlyncreative Com Bfquiztrial
Разработчикosvdb

SQL injection vulnerability in the BF Quiz (com_bfquiztrial) component before 1.3.1 for Joomla! allows remote attackers to execute arbitrary SQL commands via the catid parameter in a bfquiz…

02.11.2011
Высокая CVSS 7.5

CVE-2010-5003

РасширениеAutartica Com Autartimonial
Разработчикosvdb

SQL injection vulnerability in the AutarTimonial (com_autartimonial) component 1.0.8 for Joomla! allows remote attackers to execute arbitrary SQL commands via the limit parameter in an auta…

01.11.2011
Высокая CVSS 7.5

CVE-2010-4977

РасширениеMiniwork Com Canteen
Разработчикosvdb

SQL injection vulnerability in menu.php in the Canteen (com_canteen) component 1.0 for Joomla! allows remote attackers to execute arbitrary SQL commands via the mealid parameter to index.ph…

01.11.2011
Высокая CVSS 7.5

CVE-2010-4898

РасширениеGantry-framework Com Gantry
Разработчикosvdb

SQL injection vulnerability in the Gantry (com_gantry) component 3.0.10 for Joomla! allows remote attackers to execute arbitrary SQL commands via the moduleid parameter to index.php.

08.10.2011
Высокая CVSS 7.5

CVE-2010-4862

Разработчикosvdb

SQL injection vulnerability in the JExtensions JE Directory (com_jedirectory) component 1.0 for Joomla! allows remote attackers to execute arbitrary SQL commands via the catid parameter in…

05.10.2011
Высокая CVSS 7.5

CVE-2010-4720

РасширениеHarmistechnology Com Jeauto
Разработчикosvdb

SQL injection vulnerability in the JExtensions JE Auto (com_jeauto) component before 1.1 for Joomla! allows remote attackers to execute arbitrary SQL commands via unspecified vectors relate…

01.02.2011
Средняя CVSS 4.3

CVE-2011-0005

РасширениеJoomla Com Search
Разработчикosvdb

Cross-site scripting (XSS) vulnerability in the com_search module for Joomla! 1.0.x through 1.0.15 allows remote attackers to inject arbitrary web script or HTML via the ordering parameter…

11.01.2011
Средняя CVSS 5.0

CVE-2010-4270

Разработчикosvdb

Directory traversal vulnerability in the nBill (com_netinvoice) component before 2.0.9 standard edition, 2.0.10 lite edition, and 1.2_10 for Joomla! allows remote attackers to read arbitrar…

17.11.2010