Cmsjunkie records
8 published records for vendor cmsjunkie.
Researcher profile
- Entered KEV
- 0 · 0%
- Weaponized
- 0 · 0%
- Pre-auth RCE
- 5
- With a fix record
- 0%
- Median publish → KEV
- No record has entered KEV
Recurring classes
- CWE-89 Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection')6
- CWE-269 Improper Privilege Management1
- CWE-79 Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')1
The weakness classes this vendor ships most often: where to look.
CWEAttack profile
All records
8 records| Action | CVE | Vulnerability | Severity | KEV | EPSS | Published |
|---|---|---|---|---|---|---|
35Monitor | CVE-2019-25750No exploit | Joomla J-MultipleHotelReservation 6.0.7 SQL Injectioncmsjunkie · multiplehotelreservation · CWE-89 | High8.8 | — | 0.5% | Jun 19, 2026 |
35Monitor | CVE-2019-25752No exploit | Joomla! Component J-BusinessDirectory 4.9.7 SQL Injectioncmsjunkie · j-businessdirectory · CWE-89 | High8.8 | — | 0.5% | Jun 19, 2026 |
35Monitor | CVE-2019-25748No exploit | Joomla JHotelReservation 6.0.7 SQL Injection via search-hotelscmsjunkie · jhotelreservation · CWE-89 | High8.8 | — | 0.5% | Jun 19, 2026 |
35Monitor | CVE-2019-25751No exploit | Joomla J-ClassifiedsManager 3.0.5 SQL Injectioncmsjunkie · classifiedsmanager · CWE-89 | High8.8 | — | 0.5% | Jun 19, 2026 |
31Monitor | CVE-2015-1477Proof of concept | SQL injection vulnerability in the CMSJunkie J-ClassifiedsManager component for Joomla! allows remote attackers to execute arbitrary SQL comcmsjunkie · j-classifiedsmanager · CWE-89 | High7.5 | — | 2.4% | Feb 4, 2015 |
28Monitor | CVE-2019-25749No exploit | Joomla J-CruisePortal 6.0.4 SQL Injection via cruisescmsjunkie · j-cruiseportal · CWE-89 | High7.1 | — | 0.4% | Jun 19, 2026 |
26Monitor | CVE-2020-5182No exploit | The J-BusinessDirectory extension before 5.2.9 for Joomla! allows Reverse Tabnabbing.cmsjunkie · j-businessdirectory · CWE-269 | Medium6.5 | — | 1.0% | Feb 3, 2020 |
18Monitor | CVE-2015-1478Proof of concept | Cross-site scripting (XSS) vulnerability in the CMSJunkie J-ClassifiedsManager component for Joomla! allows remote attackers to inject arbitcmsjunkie · j-classifiedsmanager · CWE-79 | Medium4.3 | — | 3.2% | Feb 4, 2015 |
- CVE-2019-2575035Monitor
Joomla J-MultipleHotelReservation 6.0.7 SQL Injection
HighCVSS 8.8No exploitEPSS 0%cmsjunkie · multiplehotelreservationJun 19, 2026
- CVE-2019-2575235Monitor
Joomla! Component J-BusinessDirectory 4.9.7 SQL Injection
HighCVSS 8.8No exploitEPSS 0%cmsjunkie · j-businessdirectoryJun 19, 2026
- CVE-2019-2574835Monitor
Joomla JHotelReservation 6.0.7 SQL Injection via search-hotels
HighCVSS 8.8No exploitEPSS 0%cmsjunkie · jhotelreservationJun 19, 2026
- CVE-2019-2575135Monitor
Joomla J-ClassifiedsManager 3.0.5 SQL Injection
HighCVSS 8.8No exploitEPSS 0%cmsjunkie · classifiedsmanagerJun 19, 2026
- CVE-2015-147731Monitor
SQL injection vulnerability in the CMSJunkie J-ClassifiedsManager component for Joomla! allows remote attackers to execute arbitrary SQL com
HighCVSS 7.5Proof of conceptEPSS 2%cmsjunkie · j-classifiedsmanagerFeb 4, 2015
- CVE-2019-2574928Monitor
Joomla J-CruisePortal 6.0.4 SQL Injection via cruises
HighCVSS 7.1No exploitEPSS 0%cmsjunkie · j-cruiseportalJun 19, 2026
- CVE-2020-518226Monitor
The J-BusinessDirectory extension before 5.2.9 for Joomla! allows Reverse Tabnabbing.
MediumCVSS 6.5No exploitEPSS 1%cmsjunkie · j-businessdirectoryFeb 3, 2020
- CVE-2015-147818Monitor
Cross-site scripting (XSS) vulnerability in the CMSJunkie J-ClassifiedsManager component for Joomla! allows remote attackers to inject arbit
MediumCVSS 4.3Proof of conceptEPSS 3%cmsjunkie · j-classifiedsmanagerFeb 4, 2015