j2store records
3 published records for vendor j2store.
Researcher profile
- Entered KEV
- 0 · 0%
- Weaponized
- 0 · 0%
- Pre-auth RCE
- 2
- With a fix record
- 0%
- Median publish → KEV
- No record has entered KEV
Attack profile
All records
3 records| Action | CVE | Vulnerability | Severity | KEV | EPSS | Published |
|---|---|---|---|---|---|---|
42Plan | CVE-2019-9184Proof of concept | SQL injection vulnerability in the J2Store plugin 3.x before 3.3.7 for Joomla! allows remote attackers to execute arbitrary SQL commands viaj2store · j2store · CWE-89 | Critical9.8 | — | 9.0% | Feb 26, 2019 |
35Monitor | CVE-2020-13996Proof of concept | The J2Store plugin before 3.3.13 for Joomla! allows a SQL injection attack by a trusted store manager.j2store · j2store · CWE-89 | High8.8 | — | 1.3% | Jun 9, 2020 |
31Monitor | CVE-2015-6513No exploit | Multiple SQL injection vulnerabilities in the J2Store (com_j2store) extension before 3.1.7 for Joomla! allow remote attackers to execute arbj2store · j2store · CWE-89 | High7.5 | — | 2.2% | Aug 18, 2015 |
- CVE-2019-918442Plan
SQL injection vulnerability in the J2Store plugin 3.x before 3.3.7 for Joomla! allows remote attackers to execute arbitrary SQL commands via
CriticalCVSS 9.8Proof of conceptEPSS 9%j2store · j2storeFeb 26, 2019
- CVE-2020-1399635Monitor
The J2Store plugin before 3.3.13 for Joomla! allows a SQL injection attack by a trusted store manager.
HighCVSS 8.8Proof of conceptEPSS 1%j2store · j2storeJun 9, 2020
- CVE-2015-651331Monitor
Multiple SQL injection vulnerabilities in the J2Store (com_j2store) extension before 3.1.7 for Joomla! allow remote attackers to execute arb
HighCVSS 7.5No exploitEPSS 2%j2store · j2storeAug 18, 2015