Записи harmistechnology
22 опубликованных записей вендора harmistechnology.
Профиль для исследователя
- Попали в KEV
- 0 · 0 %
- С эксплойтом
- 0 · 0 %
- Pre-auth RCE
- 11
- С записью об исправлении
- 0 %
- Медиана: публикация → KEV
- Ни одна запись не попала в KEV
Повторяющиеся классы
- CWE-89 Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection')13
- CWE-22 Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal')4
- CWE-79 Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')2
- CWE-639 Authorization Bypass Through User-Controlled Key1
Классы уязвимостей, которые чаще всего встречаются у этого вендора: куда смотреть.
CWEВсе записи
22 записей| Срочность | CVE | Уязвимость | Критичность | KEV | EPSS | Опубликовано |
|---|---|---|---|---|---|---|
40В плане | CVE-2018-7315Proof of concept | SQL Injection exists in the Ek Rishta 2.9 component for Joomla! via the gender, age1, age2, religion, mothertounge, caste, or country parameharmistechnology · ek rishta · CWE-89 | Критическая9,8 | — | 2,7 % | 22 февр. 2018 г. |
36Наблюдать | CVE-2018-12254Proof of concept | router.php in the Harmis Ek rishta (aka ek-rishta) 2.10 component for Joomla! allows SQL Injection via the PATH_INFO to a home/requested_useharmistechnology · ek rishta · CWE-89 | Высокая8,8 | — | 2,6 % | 12 июн. 2018 г. |
36Наблюдать | CVE-2019-9918Эксплойта нет | An issue was discovered in the Harmis JE Messenger component 1.2.2 for Joomla!.harmistechnology · je messenger · CWE-89 | Критическая9,1 | — | 1,3 % | 29 мар. 2019 г. |
35Наблюдать | CVE-2010-2128Proof of concept | Directory traversal vulnerability in the JE Quotation Form (com_jequoteform) component 1.0b1 for Joomla! allows remote attackers to read arbjoomla · joomla\! · CWE-22 | Высокая7,5 | — | 15,8 % | 1 июн. 2010 г. |
35Наблюдать | CVE-2019-9920Эксплойта нет | An issue was discovered in the Harmis JE Messenger component 1.2.2 for Joomla!.harmistechnology · je messenger | Высокая8,8 | — | 1,3 % | 29 мар. 2019 г. |
33Наблюдать | CVE-2019-9922Proof of concept | An issue was discovered in the Harmis JE Messenger component 1.2.2 for Joomla!.harmistechnology · je messenger · CWE-22 | Высокая7,5 | — | 10,6 % | 29 мар. 2019 г. |
33Наблюдать | CVE-2010-5028Proof of concept | SQL injection vulnerability in the JExtensions JE Job (com_jejob) component 1.0 for Joomla! allows remote attackers to execute arbitrary SQLjoomla · joomla\! · CWE-89 | Высокая7,5 | — | 9,2 % | 2 нояб. 2011 г. |
31Наблюдать | CVE-2010-4720Эксплойта нет | SQL injection vulnerability in the JExtensions JE Auto (com_jeauto) component before 1.1 for Joomla! allows remote attackers to execute arbijoomla · joomla\! · CWE-89 | Высокая7,5 | — | 1,7 % | 1 февр. 2011 г. |
30Наблюдать | CVE-2010-4865Proof of concept | SQL injection vulnerability in the JE Guestbook (com_jeguestbook) component 1.0 for Joomla! allows remote attackers to execute arbitrary SQLjoomla · joomla\! · CWE-89 | Высокая7,5 | — | 1,6 % | 5 окт. 2011 г. |
30Наблюдать | CVE-2012-5230Эксплойта нет | Unspecified vulnerability in the JE Story Submit (com_jesubmit) component before 1.9 for Joomla! has unknown impact and attack vectors.joomla · joomla\! | Высокая7,5 | — | 1,3 % | 1 окт. 2012 г. |
30Наблюдать | CVE-2010-0796Proof of concept | SQL injection vulnerability in the JE Quiz (com_jequizmanagement) component 1.b01 for Joomla! allows remote attackers to execute arbitrary Sjoomla · joomla\! · CWE-89 | Высокая7,5 | — | 1,2 % | 2 мар. 2010 г. |
30Наблюдать | CVE-2010-2513Proof of concept | SQL injection vulnerability in the JE Ajax Event Calendar (com_jeajaxeventcalendar) component 1.0.5 for Joomla! allows remote attackers to ejoomla · joomla\! · CWE-89 | Высокая7,5 | — | 1,1 % | 28 июн. 2010 г. |
30Наблюдать | CVE-2010-4862Proof of concept | SQL injection vulnerability in the JExtensions JE Directory (com_jedirectory) component 1.0 for Joomla! allows remote attackers to execute ajoomla · joomla\! · CWE-89 | Высокая7,5 | — | 1,0 % | 5 окт. 2011 г. |
30Наблюдать | CVE-2010-0795Proof of concept | SQL injection vulnerability in the JE Event Calendars (com_jeeventcalendar) component 1.0 for Joomla! allows remote attackers to execute arbjoomla · joomla\! · CWE-89 | Высокая7,5 | — | 1,0 % | 2 мар. 2010 г. |
30Наблюдать | CVE-2010-4365Proof of concept | SQL injection vulnerability in JE Ajax Event Calendar (com_jeajaxeventcalendar) component for Joomla! allows remote attackers to execute arbjoomla · joomla\! · CWE-89 | Высокая7,5 | — | 1,0 % | 1 дек. 2010 г. |
30Наблюдать | CVE-2010-5022Proof of concept | SQL injection vulnerability in the JExtensions JE Story Submit (com_jesubmit) component 1.4 for Joomla! allows remote attackers to execute ajoomla · joomla\! · CWE-89 | Высокая7,5 | — | 0,9 % | 2 нояб. 2011 г. |
28Наблюдать | CVE-2010-2129Proof of concept | Directory traversal vulnerability in the JE Ajax Event Calendar (com_jeajaxeventcalendar) component 1.0.1 and 1.0.3 for Joomla! allows remotjoomla · joomla\! · CWE-22 | Средняя6,8 | — | 5,0 % | 1 июн. 2010 г. |
28Наблюдать | CVE-2010-2680Proof of concept | Directory traversal vulnerability in the JExtensions JE Section/Property Finder (jesectionfinder) component for Joomla! allows remote attackjoomla · joomla\! · CWE-22 | Средняя6,8 | — | 4,8 % | 12 июл. 2010 г. |
27Наблюдать | CVE-2010-4517Proof of concept | SQL injection vulnerability in the JExtensions JE Auto (com_jeauto) component 1.0 for Joomla!, when magic_quotes_gpc is disabled, allows remjoomla · joomla\! · CWE-89 | Средняя6,8 | — | 1,0 % | 9 дек. 2010 г. |
26Наблюдать | CVE-2019-9921Эксплойта нет | An issue was discovered in the Harmis JE Messenger component 1.2.2 for Joomla!.harmistechnology · je messenger · CWE-639 | Средняя6,5 | — | 1,1 % | 29 мар. 2019 г. |
21Наблюдать | CVE-2019-9919Эксплойта нет | An issue was discovered in the Harmis JE Messenger component 1.2.2 for Joomla!.harmistechnology · je messenger · CWE-79 | Средняя5,4 | — | 0,7 % | 29 мар. 2019 г. |
17Наблюдать | CVE-2010-2613Proof of concept | Cross-site scripting (XSS) vulnerability in the JExtensions JE Awd Song (com_awd_song) component for Joomla! allows remote attackers to injejoomla · joomla\! · CWE-79 | Средняя4,3 | — | 1,6 % | 2 июл. 2010 г. |
- CVE-2018-731540В плане
SQL Injection exists in the Ek Rishta 2.9 component for Joomla! via the gender, age1, age2, religion, mothertounge, caste, or country parame
КритическаяCVSS 9,8Proof of conceptEPSS 3 %harmistechnology · ek rishta22 февр. 2018 г.
- CVE-2018-1225436Наблюдать
router.php in the Harmis Ek rishta (aka ek-rishta) 2.10 component for Joomla! allows SQL Injection via the PATH_INFO to a home/requested_use
ВысокаяCVSS 8,8Proof of conceptEPSS 3 %harmistechnology · ek rishta12 июн. 2018 г.
- CVE-2019-991836Наблюдать
An issue was discovered in the Harmis JE Messenger component 1.2.2 for Joomla!.
КритическаяCVSS 9,1Эксплойта нетEPSS 1 %harmistechnology · je messenger29 мар. 2019 г.
- CVE-2010-212835Наблюдать
Directory traversal vulnerability in the JE Quotation Form (com_jequoteform) component 1.0b1 for Joomla! allows remote attackers to read arb
ВысокаяCVSS 7,5Proof of conceptEPSS 16 %joomla · joomla\!1 июн. 2010 г.
- CVE-2019-992035Наблюдать
An issue was discovered in the Harmis JE Messenger component 1.2.2 for Joomla!.
ВысокаяCVSS 8,8Эксплойта нетEPSS 1 %harmistechnology · je messenger29 мар. 2019 г.
- CVE-2019-992233Наблюдать
An issue was discovered in the Harmis JE Messenger component 1.2.2 for Joomla!.
ВысокаяCVSS 7,5Proof of conceptEPSS 11 %harmistechnology · je messenger29 мар. 2019 г.
- CVE-2010-502833Наблюдать
SQL injection vulnerability in the JExtensions JE Job (com_jejob) component 1.0 for Joomla! allows remote attackers to execute arbitrary SQL
ВысокаяCVSS 7,5Proof of conceptEPSS 9 %joomla · joomla\!2 нояб. 2011 г.
- CVE-2010-472031Наблюдать
SQL injection vulnerability in the JExtensions JE Auto (com_jeauto) component before 1.1 for Joomla! allows remote attackers to execute arbi
ВысокаяCVSS 7,5Эксплойта нетEPSS 2 %joomla · joomla\!1 февр. 2011 г.
- CVE-2010-486530Наблюдать
SQL injection vulnerability in the JE Guestbook (com_jeguestbook) component 1.0 for Joomla! allows remote attackers to execute arbitrary SQL
ВысокаяCVSS 7,5Proof of conceptEPSS 2 %joomla · joomla\!5 окт. 2011 г.
- CVE-2012-523030Наблюдать
Unspecified vulnerability in the JE Story Submit (com_jesubmit) component before 1.9 for Joomla! has unknown impact and attack vectors.
ВысокаяCVSS 7,5Эксплойта нетEPSS 1 %joomla · joomla\!1 окт. 2012 г.
- CVE-2010-079630Наблюдать
SQL injection vulnerability in the JE Quiz (com_jequizmanagement) component 1.b01 for Joomla! allows remote attackers to execute arbitrary S
ВысокаяCVSS 7,5Proof of conceptEPSS 1 %joomla · joomla\!2 мар. 2010 г.
- CVE-2010-251330Наблюдать
SQL injection vulnerability in the JE Ajax Event Calendar (com_jeajaxeventcalendar) component 1.0.5 for Joomla! allows remote attackers to e
ВысокаяCVSS 7,5Proof of conceptEPSS 1 %joomla · joomla\!28 июн. 2010 г.
- CVE-2010-486230Наблюдать
SQL injection vulnerability in the JExtensions JE Directory (com_jedirectory) component 1.0 for Joomla! allows remote attackers to execute a
ВысокаяCVSS 7,5Proof of conceptEPSS 1 %joomla · joomla\!5 окт. 2011 г.
- CVE-2010-079530Наблюдать
SQL injection vulnerability in the JE Event Calendars (com_jeeventcalendar) component 1.0 for Joomla! allows remote attackers to execute arb
ВысокаяCVSS 7,5Proof of conceptEPSS 1 %joomla · joomla\!2 мар. 2010 г.
- CVE-2010-436530Наблюдать
SQL injection vulnerability in JE Ajax Event Calendar (com_jeajaxeventcalendar) component for Joomla! allows remote attackers to execute arb
ВысокаяCVSS 7,5Proof of conceptEPSS 1 %joomla · joomla\!1 дек. 2010 г.
- CVE-2010-502230Наблюдать
SQL injection vulnerability in the JExtensions JE Story Submit (com_jesubmit) component 1.4 for Joomla! allows remote attackers to execute a
ВысокаяCVSS 7,5Proof of conceptEPSS 1 %joomla · joomla\!2 нояб. 2011 г.
- CVE-2010-212928Наблюдать
Directory traversal vulnerability in the JE Ajax Event Calendar (com_jeajaxeventcalendar) component 1.0.1 and 1.0.3 for Joomla! allows remot
СредняяCVSS 6,8Proof of conceptEPSS 5 %joomla · joomla\!1 июн. 2010 г.
- CVE-2010-268028Наблюдать
Directory traversal vulnerability in the JExtensions JE Section/Property Finder (jesectionfinder) component for Joomla! allows remote attack
СредняяCVSS 6,8Proof of conceptEPSS 5 %joomla · joomla\!12 июл. 2010 г.
- CVE-2010-451727Наблюдать
SQL injection vulnerability in the JExtensions JE Auto (com_jeauto) component 1.0 for Joomla!, when magic_quotes_gpc is disabled, allows rem
СредняяCVSS 6,8Proof of conceptEPSS 1 %joomla · joomla\!9 дек. 2010 г.
- CVE-2019-992126Наблюдать
An issue was discovered in the Harmis JE Messenger component 1.2.2 for Joomla!.
СредняяCVSS 6,5Эксплойта нетEPSS 1 %harmistechnology · je messenger29 мар. 2019 г.
- CVE-2019-991921Наблюдать
An issue was discovered in the Harmis JE Messenger component 1.2.2 for Joomla!.
СредняяCVSS 5,4Эксплойта нетEPSS 1 %harmistechnology · je messenger29 мар. 2019 г.
- CVE-2010-261317Наблюдать
Cross-site scripting (XSS) vulnerability in the JExtensions JE Awd Song (com_awd_song) component for Joomla! allows remote attackers to inje
СредняяCVSS 4,3Proof of conceptEPSS 2 %joomla · joomla\!2 июл. 2010 г.