İçeriğe atla
Noroxi

joomla kayıtları

joomla üreticisine ait 986 yayımlanmış kayıt.

Tüm kayıtlar

986 kayıt
  • The mailSend function in the isMail transport in PHPMailer before 5.2.18 might allow remote attackers to pass extra parameters to the mail c

    KritikCVSS 9,8KEVSilahlaştırılmışEPSS %100

    phpmailer project · phpmailer30 Ara 2016

  • [20230201] - Core - Improper access check in webservice endpoints

    OrtaCVSS 5,3KEVSilahlaştırılmışEPSS %100

    joomla · joomla\!16 Şub 2023

  • CVE-2017-8917
    69Bu hafta

    SQL injection vulnerability in Joomla! 3.7.x before 3.7.1 allows attackers to execute arbitrary SQL commands via unspecified vectors.

    KritikCVSS 9,8SilahlaştırılmışEPSS %100

    joomla · joomla\!17 May 2017

  • CVE-2016-10045
    68Bu hafta

    The isMail transport in PHPMailer before 5.2.20 might allow remote attackers to pass extra parameters to the mail command and consequently e

    KritikCVSS 9,8SilahlaştırılmışEPSS %98

    phpmailer project · phpmailer30 Ara 2016

  • CVE-2016-8869
    68Bu hafta

    The register method in the UsersModelRegistration class in controllers/user.php in the Users component in Joomla! before 3.6.4 allows remote

    KritikCVSS 9,8SilahlaştırılmışEPSS %97

    joomla · joomla\!4 Kas 2016

  • CVE-2015-7297
    60Bu hafta

    SQL injection vulnerability in Joomla! 3.2 before 3.4.4 allows remote attackers to execute arbitrary SQL commands via unspecified vectors, a

    YüksekCVSS 7,5SilahlaştırılmışEPSS %100

    joomla · joomla\!29 Eki 2015

  • CVE-2015-8562
    59Planlayın

    Joomla! 1.5.x, 2.x, and 3.x before 3.4.6 allow remote attackers to conduct PHP object injection attacks and execute arbitrary PHP code via t

    YüksekCVSS 7,5SilahlaştırılmışEPSS %98

    joomla · joomla\!16 Ara 2015

  • CVE-2008-5053
    59Planlayın

    PHP remote file inclusion vulnerability in admin.rssreader.php in the Simple RSS Reader (com_rssreader) 1.0 component for Joomla! allows rem

    KritikCVSS 10,0Kavram kanıtıEPSS %64

    joomla · com rssreader13 Kas 2008

  • CVE-2015-7857
    58Planlayın

    SQL injection vulnerability in the getListQuery function in administrator/components/com_contenthistory/models/history.php in Joomla! 3.2 be

    YüksekCVSS 7,5SilahlaştırılmışEPSS %94

    joomla · joomla\!29 Eki 2015

  • CVE-2015-7858
    56Planlayın

    SQL injection vulnerability in Joomla! 3.2 before 3.4.4 allows remote attackers to execute arbitrary SQL commands via unspecified vectors, a

    YüksekCVSS 7,5SilahlaştırılmışEPSS %86

    joomla · joomla\!29 Eki 2015

  • CVE-2016-8870
    56Planlayın

    The register method in the UsersModelRegistration class in controllers/user.php in the Users component in Joomla! before 3.6.4, when registr

    YüksekCVSS 8,1SilahlaştırılmışEPSS %81

    joomla · joomla\!4 Kas 2016

  • CVE-2019-11358
    50Planlayın

    jQuery before 3.4.0, as used in Drupal, Backdrop CMS, and other products, mishandles jQuery.extend(true, {}, ...) because of Object.prototyp

    OrtaCVSS 6,1Kavram kanıtıEPSS %87

    jquery · jquery19 Nis 2019

  • CVE-2019-10945
    50Planlayın

    An issue was discovered in Joomla! before 3.9.5.

    KritikCVSS 9,8Kavram kanıtıEPSS %38

    joomla · joomla\!10 Nis 2019

  • CVE-2021-26030
    49Planlayın

    [20210401] - Core - Escape xss in logo parameter error pages

    OrtaCVSS 6,1İstismar yokEPSS %82

    joomla · joomla\!14 Nis 2021

  • CVE-2021-23124
    48Planlayın

    [20210102] - Core - XSS in mod_breadcrumbs aria-label attribute

    OrtaCVSS 6,1İstismar yokEPSS %79

    joomla · joomla\!12 Oca 2021

  • CVE-2020-35613
    48Planlayın

    [20201104] - Core - SQL injection in com_users list view

    KritikCVSS 9,8İstismar yokEPSS %29

    joomla · joomla\!28 Ara 2020

  • CVE-2014-7228
    47Planlayın

    Akeeba Restore (restore.php), as used in Joomla! 2.5.4 through 2.5.25, 3.x through 3.2.5, and 3.3.0 through 3.3.4; Akeeba Backup for Joomla!

    YüksekCVSS 7,5SilahlaştırılmışEPSS %55

    joomla · joomla\!3 Kas 2014

  • CVE-2008-1505
    44Planlayın

    PHP remote file inclusion vulnerability in the SSTREAMTV custompages (com_custompages) 1.1 and earlier component for Joomla! allows remote a

    YüksekCVSS 7,5Kavram kanıtıEPSS %46

    joomla · joomla25 Mar 2008

  • CVE-2010-5286
    44Planlayın

    Directory traversal vulnerability in Jstore (com_jstore) component for Joomla! allows remote attackers to read arbitrary files and possibly

    KritikCVSS 10,0Kavram kanıtıEPSS %12

    joomla · joomla\!26 Kas 2012

  • CVE-2008-5789
    43Planlayın

    Multiple PHP remote file inclusion vulnerabilities in the Recly Interactive Feederator (com_feederator) component 1.0.5 for Joomla! allow re

    YüksekCVSS 7,5Kavram kanıtıEPSS %45

    recly · interactive feederator31 Ara 2008

  • CVE-2007-5065
    43Planlayın

    PHP remote file inclusion vulnerability in admin.slideshow1.php in the Flash Slide Show (com_slideshow) component for Joomla! allows remote

    YüksekCVSS 7,5Kavram kanıtıEPSS %42

    joomla · joomla24 Eyl 2007

  • CVE-2018-8045
    43Planlayın

    In Joomla! 3.5.0 through 3.8.5, the lack of type casting of a variable in a SQL statement leads to a SQL injection vulnerability in the User

    YüksekCVSS 8,8Kavram kanıtıEPSS %28

    joomla · joomla\!14 Mar 2018

  • CVE-2007-1699
    43Planlayın

    Multiple PHP remote file inclusion vulnerabilities in the SWmenu (com_swmenupro and com_swmenufree) 4.0 component for Mambo and Joomla! allo

    KritikCVSS 10,0Kavram kanıtıEPSS %11

    joomla · swmenu component26 Mar 2007

  • CVE-2008-4668
    42Planlayın

    Directory traversal vulnerability in the Image Browser (com_imagebrowser) 0.1.5 component for Joomla! allows remote attackers to include and

    KritikCVSS 9,0Kavram kanıtıEPSS %21

    joomla · com imagebrowser22 Eki 2008

  • CVE-2019-12765
    42Planlayın

    An issue was discovered in Joomla! before 3.9.7.

    KritikCVSS 9,8Kavram kanıtıEPSS %10

    joomla · joomla\!11 Haz 2019