joomla CVE Vulnerabilities & Metrics

Focus on joomla vulnerabilities and metrics.

Last updated: 08 Mar 2025, 23:25 UTC

About joomla Security Exposure

This page consolidates all known Common Vulnerabilities and Exposures (CVEs) associated with joomla. We track both calendar-based metrics (using fixed periods) and rolling metrics (using gliding windows) to give you a comprehensive view of security trends and risk evolution. Use these insights to assess risk and plan your patching strategy.

For a broader perspective on cybersecurity threats, explore the comprehensive list of CVEs by vendor and product. Stay updated on critical vulnerabilities affecting major software and hardware providers.

Global CVE Overview

Total joomla CVEs: 185
Earliest CVE date: 23 Nov 2005, 00:03 UTC
Latest CVE date: 09 Jul 2024, 17:15 UTC

Latest CVE reference: CVE-2024-26279

Rolling Stats

30-day Count (Rolling): 0
365-day Count (Rolling): 5

Calendar-based Variation

Calendar-based Variation compares a fixed calendar period (e.g., this month versus the same month last year), while Rolling Growth Rate uses a continuous window (e.g., last 30 days versus the previous 30 days) to capture trends independent of calendar boundaries.

Variations & Growth

Month Variation (Calendar): 0%
Year Variation (Calendar): 25.0%

Month Growth Rate (30-day Rolling): 0.0%
Year Growth Rate (365-day Rolling): 25.0%

Monthly CVE Trends (current vs previous Year)

Annual CVE Trends (Last 20 Years)

Critical joomla CVEs (CVSS ≥ 9) Over 20 Years

CVSS Stats

Average CVSS: 5.92

Max CVSS: 10.0

Critical CVEs (≥9): 10

CVSS Range vs. Count

Range Count
0.0-3.9 25
4.0-6.9 255
7.0-8.9 173
9.0-10.0 10

CVSS Distribution Chart

Top 5 Highest CVSS joomla CVEs

These are the five CVEs with the highest CVSS scores for joomla, sorted by severity first and recency.

All CVEs for joomla

CVE-2024-26279 joomla vulnerability CVSS: 0 09 Jul 2024, 17:15 UTC

The wrapper extensions do not correctly validate inputs, leading to XSS vectors.

CVE-2024-26278 joomla vulnerability CVSS: 0 09 Jul 2024, 17:15 UTC

The Custom Fields component not correctly filter inputs, leading to a XSS vector.

CVE-2024-21731 joomla vulnerability CVSS: 0 09 Jul 2024, 17:15 UTC

Improper handling of input could lead to an XSS vector in the StringHelper::truncate method.

CVE-2024-21730 joomla vulnerability CVSS: 0 09 Jul 2024, 17:15 UTC

The fancyselect list field layout does not correctly escape inputs, leading to a self-XSS vector.

CVE-2024-21729 joomla vulnerability CVSS: 0 09 Jul 2024, 17:15 UTC

Inadequate input validation leads to XSS vulnerabilities in the accessiblemedia field.

CVE-2024-21724 joomla vulnerability CVSS: 0 29 Feb 2024, 01:44 UTC

Inadequate input validation for media selection fields lead to XSS vulnerabilities in various extensions.

CVE-2023-40626 joomla vulnerability CVSS: 0 29 Nov 2023, 13:15 UTC

The language file parsing process could be manipulated to expose environment variables. Environment variables might contain sensible information.

CVE-2023-23755 joomla vulnerability CVSS: 0 30 May 2023, 17:15 UTC

An issue was discovered in Joomla! 4.2.0 through 4.3.1. The lack of rate limiting allowed brute force attacks against MFA methods.

CVE-2023-23754 joomla vulnerability CVSS: 0 30 May 2023, 17:15 UTC

An issue was discovered in Joomla! 4.2.0 through 4.3.1. Lack of input validation caused an open redirect and XSS issue within the new mfa selection screen.

CVE-2023-23752 joomla vulnerability CVSS: 0 16 Feb 2023, 17:15 UTC

An issue was discovered in Joomla! 4.0.0 through 4.2.7. An improper access check allows unauthorized access to webservice endpoints.

CVE-2023-23751 joomla vulnerability CVSS: 0 01 Feb 2023, 22:15 UTC

An issue was discovered in Joomla! 4.0.0 through 4.2.4. A missing ACL check allows non super-admin users to access com_actionlogs.

CVE-2023-23750 joomla vulnerability CVSS: 0 01 Feb 2023, 22:15 UTC

An issue was discovered in Joomla! 4.0.0 through 4.2.6. A missing token check causes a CSRF vulnerability in the handling of post-installation messages.

CVE-2022-27914 joomla vulnerability CVSS: 0 08 Nov 2022, 19:15 UTC

An issue was discovered in Joomla! 4.0.0 through 4.2.4. Inadequate filtering of potentially malicious user input leads to reflected XSS vulnerabilities in com_media.

CVE-2022-27913 joomla vulnerability CVSS: 0 25 Oct 2022, 19:15 UTC

An issue was discovered in Joomla! 4.2.0 through 4.2.3. Inadequate filtering of potentially malicious user input leads to reflected XSS vulnerabilities in various components.

CVE-2022-27912 joomla vulnerability CVSS: 0 25 Oct 2022, 19:15 UTC

An issue was discovered in Joomla! 4.0.0 through 4.2.3. Sites with publicly enabled debug mode exposed data of previous requests.

CVE-2022-27911 joomla vulnerability CVSS: 0 31 Aug 2022, 10:15 UTC

An issue was discovered in Joomla! 4.2.0. Multiple Full Path Disclosures because of missing '_JEXEC or die check' caused by the PSR12 changes.

CVE-2022-23801 joomla vulnerability CVSS: 4.3 30 Mar 2022, 16:15 UTC

An issue was discovered in Joomla! 4.0.0 through 4.1.0. Possible XSS atack vector through SVG embedding in com_media.

CVE-2022-23800 joomla vulnerability CVSS: 4.3 30 Mar 2022, 16:15 UTC

An issue was discovered in Joomla! 4.0.0 through 4.1.0. Inadequate content filtering leads to XSS vulnerabilities in various components.

CVE-2022-23799 joomla vulnerability CVSS: 6.8 30 Mar 2022, 16:15 UTC

An issue was discovered in Joomla! 4.0.0 through 4.1.0. Under specific circumstances, JInput pollutes method-specific input bags with $_REQUEST data.

CVE-2022-23798 joomla vulnerability CVSS: 5.8 30 Mar 2022, 16:15 UTC

An issue was discovered in Joomla! 2.5.0 through 3.10.6 & 4.0.0 through 4.1.0. Inadequate validation of URLs could result into an invalid check whether an redirect URL is internal or not.

CVE-2022-23797 joomla vulnerability CVSS: 7.5 30 Mar 2022, 16:15 UTC

An issue was discovered in Joomla! 3.0.0 through 3.10.6 & 4.0.0 through 4.1.0. Inadequate filtering on the selected Ids on an request could resulted into an possible SQL injection.

CVE-2022-23796 joomla vulnerability CVSS: 4.3 30 Mar 2022, 16:15 UTC

An issue was discovered in Joomla! 3.7.0 through 3.10.6. Lack of input validation could allow an XSS attack using com_fields.

CVE-2022-23795 joomla vulnerability CVSS: 6.8 30 Mar 2022, 16:15 UTC

An issue was discovered in Joomla! 2.5.0 through 3.10.6 & 4.0.0 through 4.1.0. A user row was not bound to a specific authentication mechanism which could under very special circumstances allow an account takeover.

CVE-2022-23794 joomla vulnerability CVSS: 5.0 30 Mar 2022, 16:15 UTC

An issue was discovered in Joomla! 3.0.0 through 3.10.6 & 4.0.0 through 4.1.0. Uploading a file name of an excess length causes the error. This error brings up the screen with the path of the source code of the web application.

CVE-2022-23793 joomla vulnerability CVSS: 5.0 30 Mar 2022, 16:15 UTC

An issue was discovered in Joomla! 3.0.0 through 3.10.6 & 4.0.0 through 4.1.0. Extracting an specifilcy crafted tar package could write files outside of the intended path.

CVE-2021-26040 joomla vulnerability CVSS: 6.4 24 Aug 2021, 15:15 UTC

An issue was discovered in Joomla! 4.0.0. The media manager does not correctly check the user's permissions before executing a file deletion command.

CVE-2021-26039 joomla vulnerability CVSS: 4.3 07 Jul 2021, 11:15 UTC

An issue was discovered in Joomla! 3.0.0 through 3.9.27. Inadequate escaping in the imagelist view of com_media leads to a XSS vulnerability.

CVE-2021-26038 joomla vulnerability CVSS: 4.3 07 Jul 2021, 11:15 UTC

An issue was discovered in Joomla! 2.5.0 through 3.9.27. Install action in com_installer lack the required hardcoded ACL checks for superusers. A default system is not affected cause the default ACL for com_installer is limited to super users already.

CVE-2021-26037 joomla vulnerability CVSS: 5.0 07 Jul 2021, 11:15 UTC

An issue was discovered in Joomla! 2.5.0 through 3.9.27. CMS functions did not properly termine existing user sessions when a user's password was changed or the user was blocked.

CVE-2021-26036 joomla vulnerability CVSS: 5.0 07 Jul 2021, 11:15 UTC

An issue was discovered in Joomla! 2.5.0 through 3.9.27. Missing validation of input could lead to a broken usergroups table.

CVE-2021-26035 joomla vulnerability CVSS: 4.3 07 Jul 2021, 11:15 UTC

An issue was discovered in Joomla! 3.0.0 through 3.9.27. Inadequate escaping in the rules field of the JForm API leads to a XSS vulnerability.

CVE-2010-1435 joomla vulnerability CVSS: 7.5 21 Jun 2021, 23:15 UTC

Joomla! Core is prone to a security bypass vulnerability. Exploiting this issue may allow attackers to perform otherwise restricted actions and subsequently retrieve password reset tokens from the database through an already existing SQL injection vector. Joomla! Core versions 1.5.x ranging from 1.5.0 and up to and including 1.5.15 are vulnerable.

CVE-2010-1434 joomla vulnerability CVSS: 5.0 21 Jun 2021, 23:15 UTC

Joomla! Core is prone to a session fixation vulnerability. An attacker may leverage this issue to hijack an arbitrary session and gain access to sensitive information, which may help in launching further attacks. Joomla! Core versions 1.5.x ranging from 1.5.0 and up to and including 1.5.15 are vulnerable.

CVE-2010-1433 joomla vulnerability CVSS: 7.5 21 Jun 2021, 23:15 UTC

Joomla! Core is prone to a vulnerability that lets attackers upload arbitrary files because the application fails to properly verify user-supplied input. An attacker can exploit this vulnerability to upload arbitrary code and run it in the context of the webserver process. This may facilitate unauthorized access or privilege escalation; other attacks are also possible. Joomla! Core versions 1.5.x ranging from 1.5.0 and up to and including 1.5.15 are vulnerable.

CVE-2010-1432 joomla vulnerability CVSS: 5.0 21 Jun 2021, 23:15 UTC

Joomla! Core is prone to an information disclosure vulnerability. Attackers can exploit this issue to obtain sensitive information that may help in launching further attacks. Joomla! Core versions 1.5.x ranging from 1.5.0 and up to and including 1.5.15 are vulnerable.

CVE-2021-26034 joomla vulnerability CVSS: 4.3 26 May 2021, 11:15 UTC

An issue was discovered in Joomla! 3.0.0 through 3.9.26. A missing token check causes a CSRF vulnerability in data download endpoints in com_banners and com_sysinfo.

CVE-2021-26033 joomla vulnerability CVSS: 4.3 26 May 2021, 11:15 UTC

An issue was discovered in Joomla! 3.0.0 through 3.9.26. A missing token check causes a CSRF vulnerability in the AJAX reordering endpoint.

CVE-2021-26032 joomla vulnerability CVSS: 4.3 26 May 2021, 11:15 UTC

An issue was discovered in Joomla! 3.0.0 through 3.9.26. HTML was missing in the executable block list of MediaHelper::canUpload, leading to XSS attack vectors.

CVE-2021-26031 joomla vulnerability CVSS: 5.0 14 Apr 2021, 18:15 UTC

An issue was discovered in Joomla! 3.0.0 through 3.9.25. Inadequate filters on module layout settings could lead to an LFI.

CVE-2021-26030 joomla vulnerability CVSS: 4.3 14 Apr 2021, 18:15 UTC

An issue was discovered in Joomla! 3.0.0 through 3.9.25. Inadequate escaping allowed XSS attacks using the logo parameter of the default templates on error page

CVE-2021-26029 joomla vulnerability CVSS: 5.0 04 Mar 2021, 18:15 UTC

An issue was discovered in Joomla! 1.6.0 through 3.9.24. Inadequate filtering of form contents could allow to overwrite the author field.

CVE-2021-26028 joomla vulnerability CVSS: 4.3 04 Mar 2021, 18:15 UTC

An issue was discovered in Joomla! 3.0.0 through 3.9.24. Extracting an specifilcy crafted zip package could write files outside of the intended path.

CVE-2021-26027 joomla vulnerability CVSS: 5.0 04 Mar 2021, 18:15 UTC

An issue was discovered in Joomla! 3.0.0 through 3.9.24. Incorrect ACL checks could allow unauthorized change of the category for an article.

CVE-2021-23132 joomla vulnerability CVSS: 5.0 04 Mar 2021, 18:15 UTC

An issue was discovered in Joomla! 3.0.0 through 3.9.24. com_media allowed paths that are not intended for image uploads

CVE-2021-23131 joomla vulnerability CVSS: 5.0 04 Mar 2021, 18:15 UTC

An issue was discovered in Joomla! 3.2.0 through 3.9.24. Missing input validation within the template manager.

CVE-2021-23130 joomla vulnerability CVSS: 4.3 04 Mar 2021, 18:15 UTC

An issue was discovered in Joomla! 2.5.0 through 3.9.24. Missing filtering of feed fields could lead to xss issues.

CVE-2021-23129 joomla vulnerability CVSS: 4.3 04 Mar 2021, 18:15 UTC

An issue was discovered in Joomla! 2.5.0 through 3.9.24. Missing filtering of messages showed to users that could lead to xss issues.

CVE-2021-23128 joomla vulnerability CVSS: 6.4 04 Mar 2021, 18:15 UTC

An issue was discovered in Joomla! 3.2.0 through 3.9.24. The core shipped but unused randval implementation within FOF (FOFEncryptRandval) used an potential insecure implemetation. That has now been replaced with a call to 'random_bytes()' and its backport that is shipped within random_compat.

CVE-2021-23127 joomla vulnerability CVSS: 6.4 04 Mar 2021, 18:15 UTC

An issue was discovered in Joomla! 3.2.0 through 3.9.24. Usage of an insufficient length for the 2FA secret accoring to RFC 4226 of 10 bytes vs 20 bytes.

CVE-2021-23126 joomla vulnerability CVSS: 5.0 04 Mar 2021, 18:15 UTC

An issue was discovered in Joomla! 3.2.0 through 3.9.24. Usage of the insecure rand() function within the process of generating the 2FA secret.

CVE-2021-23125 joomla vulnerability CVSS: 4.3 12 Jan 2021, 21:15 UTC

An issue was discovered in Joomla! 3.1.0 through 3.9.23. The lack of escaping of image-related parameters in multiple com_tags views cause lead to XSS attack vectors.

CVE-2021-23124 joomla vulnerability CVSS: 4.3 12 Jan 2021, 21:15 UTC

An issue was discovered in Joomla! 3.9.0 through 3.9.23. The lack of escaping in mod_breadcrumbs aria-label attribute allows XSS attacks.

CVE-2021-23123 joomla vulnerability CVSS: 5.0 12 Jan 2021, 21:15 UTC

An issue was discovered in Joomla! 3.0.0 through 3.9.23. The lack of ACL checks in the orderPosition endpoint of com_modules leak names of unpublished and/or inaccessible modules.

CVE-2020-35616 joomla vulnerability CVSS: 5.0 28 Dec 2020, 20:15 UTC

An issue was discovered in Joomla! 1.7.0 through 3.9.22. Lack of input validation while handling ACL rulesets can cause write ACL violations.

CVE-2020-35615 joomla vulnerability CVSS: 6.8 28 Dec 2020, 20:15 UTC

An issue was discovered in Joomla! 2.5.0 through 3.9.22. A missing token check in the emailexport feature of com_privacy causes a CSRF vulnerability.

CVE-2020-35614 joomla vulnerability CVSS: 5.0 28 Dec 2020, 20:15 UTC

An issue was discovered in Joomla! 3.9.0 through 3.9.22. Improper handling of the username leads to a user enumeration attack vector in the backend login page.

CVE-2020-35613 joomla vulnerability CVSS: 7.5 28 Dec 2020, 20:15 UTC

An issue was discovered in Joomla! 3.0.0 through 3.9.22. Improper filter blacklist configuration leads to a SQL injection vulnerability in the backend user list.

CVE-2020-35612 joomla vulnerability CVSS: 5.0 28 Dec 2020, 20:15 UTC

An issue was discovered in Joomla! 2.5.0 through 3.9.22. The folder parameter of mod_random_image lacked input validation, leading to a path traversal vulnerability.

CVE-2020-35611 joomla vulnerability CVSS: 5.0 28 Dec 2020, 20:15 UTC

An issue was discovered in Joomla! 2.5.0 through 3.9.22. The globlal configuration page does not remove secrets from the HTML output, disclosing the current values.

CVE-2020-35610 joomla vulnerability CVSS: 5.0 28 Dec 2020, 20:15 UTC

An issue was discovered in Joomla! 2.5.0 through 3.9.22. The autosuggestion feature of com_finder did not respect the access level of the corresponding terms.

CVE-2020-24599 joomla vulnerability CVSS: 4.3 26 Aug 2020, 22:15 UTC

An issue was discovered in Joomla! before 3.9.21. Lack of escaping in mod_latestactions allows XSS attacks.

CVE-2020-24598 joomla vulnerability CVSS: 5.8 26 Aug 2020, 22:15 UTC

An issue was discovered in Joomla! before 3.9.21. Lack of input validation in the vote feature of com_content leads to an open redirect.

CVE-2020-15700 joomla vulnerability CVSS: 6.8 15 Jul 2020, 16:15 UTC

An issue was discovered in Joomla! through 3.9.19. A missing token check in the ajax_install endpoint of com_installer causes a CSRF vulnerability.

CVE-2020-15699 joomla vulnerability CVSS: 5.0 15 Jul 2020, 16:15 UTC

An issue was discovered in Joomla! through 3.9.19. Missing validation checks on the usergroups table object can result in a broken site configuration.

CVE-2020-15698 joomla vulnerability CVSS: 5.0 15 Jul 2020, 16:15 UTC

An issue was discovered in Joomla! through 3.9.19. Inadequate filtering on the system information screen could expose Redis or proxy credentials

CVE-2020-15697 joomla vulnerability CVSS: 4.0 15 Jul 2020, 16:15 UTC

An issue was discovered in Joomla! through 3.9.19. Internal read-only fields in the User table class could be modified by users.

CVE-2020-15696 joomla vulnerability CVSS: 4.3 15 Jul 2020, 16:15 UTC

An issue was discovered in Joomla! through 3.9.19. Lack of input filtering and escaping allows XSS attacks in mod_random_image.

CVE-2020-15695 joomla vulnerability CVSS: 6.8 15 Jul 2020, 16:15 UTC

An issue was discovered in Joomla! through 3.9.19. A missing token check in the remove request section of com_privacy causes a CSRF vulnerability.

CVE-2020-13763 joomla vulnerability CVSS: 5.0 02 Jun 2020, 20:15 UTC

In Joomla! before 3.9.19, the default settings of the global textfilter configuration do not block HTML inputs for Guest users.

CVE-2020-13762 joomla vulnerability CVSS: 4.3 02 Jun 2020, 20:15 UTC

In Joomla! before 3.9.19, incorrect input validation of the module tag option in com_modules allows XSS.

CVE-2020-13761 joomla vulnerability CVSS: 4.3 02 Jun 2020, 20:15 UTC

In Joomla! before 3.9.19, lack of input validation in the heading tag option of the "Articles - Newsflash" and "Articles - Categories" modules allows XSS.

CVE-2020-13760 joomla vulnerability CVSS: 6.8 02 Jun 2020, 20:15 UTC

In Joomla! before 3.9.19, missing token checks in com_postinstall lead to CSRF.

CVE-2020-11891 joomla vulnerability CVSS: 5.0 21 Apr 2020, 17:15 UTC

An issue was discovered in Joomla! before 3.9.17. Incorrect ACL checks in the access level section of com_users allow the unauthorized editing of usergroups.

CVE-2020-11890 joomla vulnerability CVSS: 5.0 21 Apr 2020, 17:15 UTC

An issue was discovered in Joomla! before 3.9.17. Improper input validations in the usergroup table class could lead to a broken ACL configuration.

CVE-2020-11889 joomla vulnerability CVSS: 5.0 21 Apr 2020, 17:15 UTC

An issue was discovered in Joomla! before 3.9.17. Incorrect ACL checks in the access level section of com_users allow the unauthorized deletion of usergroups.

CVE-2020-10243 joomla vulnerability CVSS: 7.5 16 Mar 2020, 16:15 UTC

An issue was discovered in Joomla! before 3.9.16. The lack of type casting of a variable in a SQL statement leads to a SQL injection vulnerability in the Featured Articles frontend menutype.

CVE-2020-10242 joomla vulnerability CVSS: 4.3 16 Mar 2020, 16:15 UTC

An issue was discovered in Joomla! before 3.9.16. Inadequate handling of CSS selectors in the Protostar and Beez3 JavaScript allows XSS attacks.

CVE-2020-10241 joomla vulnerability CVSS: 6.8 16 Mar 2020, 16:15 UTC

An issue was discovered in Joomla! before 3.9.16. Missing token checks in the image actions of com_templates lead to CSRF.

CVE-2020-10240 joomla vulnerability CVSS: 5.0 16 Mar 2020, 16:15 UTC

An issue was discovered in Joomla! before 3.9.16. Missing length checks in the user table can lead to the creation of users with duplicate usernames and/or email addresses.

CVE-2020-10239 joomla vulnerability CVSS: 6.5 16 Mar 2020, 16:15 UTC

An issue was discovered in Joomla! before 3.9.16. Incorrect Access Control in the SQL fieldtype of com_fields allows access for non-superadmin users.

CVE-2020-10238 joomla vulnerability CVSS: 5.0 16 Mar 2020, 16:15 UTC

An issue was discovered in Joomla! before 3.9.16. Various actions in com_templates lack the required ACL checks, leading to various potential attack vectors.

CVE-2011-1151 joomla vulnerability CVSS: 6.4 05 Feb 2020, 22:15 UTC

Joomla! 1.6.0 is vulnerable to SQL Injection via the filter_order and filer_order_Dir parameters.

CVE-2011-4912 joomla vulnerability CVSS: 5.0 04 Feb 2020, 14:15 UTC

Joomla! com_mailto 1.5.x through 1.5.13 has an automated mail timeout bypass.

CVE-2011-4937 joomla vulnerability CVSS: 5.0 04 Feb 2020, 13:15 UTC

Joomla! 1.7.1 has core information disclosure due to inadequate error checking.

CVE-2011-3629 joomla vulnerability CVSS: 5.0 04 Feb 2020, 13:15 UTC

Joomla! core 1.7.1 allows information disclosure due to weak encryption

CVE-2020-8421 joomla vulnerability CVSS: 4.3 28 Jan 2020, 21:15 UTC

An issue was discovered in Joomla! before 3.9.15. Inadequate escaping of usernames allows XSS attacks in com_actionlogs.

CVE-2020-8420 joomla vulnerability CVSS: 6.8 28 Jan 2020, 21:15 UTC

An issue was discovered in Joomla! before 3.9.15. A missing CSRF token check in the LESS compiler of com_templates causes a CSRF vulnerability.

CVE-2020-8419 joomla vulnerability CVSS: 6.8 28 Jan 2020, 21:15 UTC

An issue was discovered in Joomla! before 3.9.15. Missing token checks in the batch actions of various components cause CSRF vulnerabilities.

CVE-2011-3595 joomla vulnerability CVSS: 3.5 22 Jan 2020, 16:15 UTC

Multiple Cross-site Scripting (XSS) vulnerabilities exist in Joomla! through 1.7.0 in index.php in the search word, extension, asset, and author parameters.

CVE-2011-4907 joomla vulnerability CVSS: 5.0 15 Jan 2020, 14:15 UTC

Joomla! 1.5x through 1.5.12: Missing JEXEC Check

CVE-2012-1563 joomla vulnerability CVSS: 5.0 15 Jan 2020, 13:15 UTC

Joomla! before 2.5.3 allows Admin Account Creation.

CVE-2012-1562 joomla vulnerability CVSS: 5.0 15 Jan 2020, 13:15 UTC

Joomla! core before 2.5.3 allows unauthorized password change.

CVE-2019-19846 joomla vulnerability CVSS: 7.5 18 Dec 2019, 04:15 UTC

In Joomla! before 3.9.14, the lack of validation of configuration parameters used in SQL queries caused various SQL injection vectors.

CVE-2019-19845 joomla vulnerability CVSS: 5.0 18 Dec 2019, 04:15 UTC

In Joomla! before 3.9.14, a missing access check in framework files could lead to a path disclosure.

CVE-2019-18674 joomla vulnerability CVSS: 5.0 06 Nov 2019, 02:15 UTC

An issue was discovered in Joomla! before 3.9.13. A missing access check in the phputf8 mapping files could lead to a path disclosure.

CVE-2019-18650 joomla vulnerability CVSS: 6.8 06 Nov 2019, 02:15 UTC

An issue was discovered in Joomla! before 3.9.13. A missing token check in com_template causes a CSRF vulnerability.

CVE-2019-16725 joomla vulnerability CVSS: 4.3 24 Sep 2019, 21:15 UTC

In Joomla! 3.x before 3.9.12, inadequate escaping allowed XSS attacks using the logo parameter of the default templates.

CVE-2019-15028 joomla vulnerability CVSS: 5.0 14 Aug 2019, 04:15 UTC

In Joomla! before 3.9.11, inadequate checks in com_contact could allow mail submission in disabled forms.

CVE-2019-14654 joomla vulnerability CVSS: 6.5 05 Aug 2019, 01:15 UTC

In Joomla! 3.9.7 and 3.9.8, inadequate filtering allows users authorised to create custom fields to manipulate the filtering options and inject an unvalidated option. In other words, the filter attribute in subform fields allows remote code execution. This is fixed in 3.9.9.

CVE-2019-12766 joomla vulnerability CVSS: 4.3 11 Jun 2019, 19:29 UTC

An issue was discovered in Joomla! before 3.9.7. The subform fieldtype does not sufficiently filter or validate input of subfields. This leads to XSS attack vectors.

CVE-2019-12765 joomla vulnerability CVSS: 7.5 11 Jun 2019, 19:29 UTC

An issue was discovered in Joomla! before 3.9.7. The CSV export of com_actionslogs is vulnerable to CSV injection.

CVE-2019-12764 joomla vulnerability CVSS: 4.0 11 Jun 2019, 19:29 UTC

An issue was discovered in Joomla! before 3.9.7. The update server URL of com_joomlaupdate can be manipulated by non Super-Admin users.

CVE-2019-11809 joomla vulnerability CVSS: 4.3 20 May 2019, 13:29 UTC

An issue was discovered in Joomla! before 3.9.6. The debug views of com_users do not properly escape user supplied data, which leads to a potential XSS attack vector.

CVE-2019-11831 joomla vulnerability CVSS: 7.5 09 May 2019, 04:29 UTC

The PharStreamWrapper (aka phar-stream-wrapper) package 2.x before 2.1.1 and 3.x before 3.1.1 for TYPO3 does not prevent directory traversal, which allows attackers to bypass a deserialization protection mechanism, as demonstrated by a phar:///path/bad.phar/../good.phar URL.

CVE-2019-11358 joomla vulnerability CVSS: 4.3 20 Apr 2019, 00:29 UTC

jQuery before 3.4.0, as used in Drupal, Backdrop CMS, and other products, mishandles jQuery.extend(true, {}, ...) because of Object.prototype pollution. If an unsanitized source object contained an enumerable __proto__ property, it could extend the native Object.prototype.

CVE-2019-10946 joomla vulnerability CVSS: 5.0 10 Apr 2019, 19:29 UTC

An issue was discovered in Joomla! before 3.9.5. The "refresh list of helpsites" endpoint of com_users lacks access checks, allowing calls from unauthenticated users.

CVE-2019-10945 joomla vulnerability CVSS: 7.5 10 Apr 2019, 19:29 UTC

An issue was discovered in Joomla! before 3.9.5. The Media Manager component does not properly sanitize the folder parameter, allowing attackers to act outside the media manager root directory.

CVE-2019-9714 joomla vulnerability CVSS: 4.3 12 Mar 2019, 18:29 UTC

An issue was discovered in Joomla! before 3.9.4. The media form field lacks escaping, leading to XSS.

CVE-2019-9713 joomla vulnerability CVSS: 5.0 12 Mar 2019, 18:29 UTC

An issue was discovered in Joomla! before 3.9.4. The sample data plugins lack ACL checks, allowing unauthorized access.

CVE-2019-9712 joomla vulnerability CVSS: 4.3 12 Mar 2019, 18:29 UTC

An issue was discovered in Joomla! before 3.9.4. The JSON handler in com_config lacks input validation, leading to XSS.

CVE-2019-9711 joomla vulnerability CVSS: 4.3 12 Mar 2019, 18:29 UTC

An issue was discovered in Joomla! before 3.9.4. The item_title layout in edit views lacks escaping, leading to XSS.

CVE-2019-7744 joomla vulnerability CVSS: 4.3 12 Feb 2019, 18:29 UTC

An issue was discovered in Joomla! before 3.9.3. Inadequate filtering on URL fields in various core components could lead to an XSS vulnerability.

CVE-2019-7743 joomla vulnerability CVSS: 7.5 12 Feb 2019, 18:29 UTC

An issue was discovered in Joomla! before 3.9.3. The phar:// stream wrapper can be used for objection injection attacks because there is no protection mechanism (such as the TYPO3 PHAR stream wrapper) to prevent use of the phar:// handler for non .phar-files.

CVE-2019-7742 joomla vulnerability CVSS: 4.3 12 Feb 2019, 18:29 UTC

An issue was discovered in Joomla! before 3.9.3. A combination of specific web server configurations, in connection with specific file types and browser-side MIME-type sniffing, causes an XSS attack vector.

CVE-2019-7741 joomla vulnerability CVSS: 4.3 12 Feb 2019, 18:29 UTC

An issue was discovered in Joomla! before 3.9.3. Inadequate checks at the Global Configuration helpurl settings allowed stored XSS.

CVE-2019-7740 joomla vulnerability CVSS: 4.3 12 Feb 2019, 18:29 UTC

An issue was discovered in Joomla! before 3.9.3. Inadequate parameter handling in JavaScript code (core.js writeDynaList) could lead to an XSS attack vector.

CVE-2019-7739 joomla vulnerability CVSS: 4.3 12 Feb 2019, 18:29 UTC

An issue was discovered in Joomla! before 3.9.3. The "No Filtering" textfilter overrides child settings in the Global Configuration. This is intended behavior. However, it might be unexpected for the user because the configuration dialog lacks an additional message to explain this.

CVE-2019-6264 joomla vulnerability CVSS: 4.3 16 Jan 2019, 08:29 UTC

An issue was discovered in Joomla! before 3.9.2. Inadequate escaping in mod_banners leads to a stored XSS vulnerability.

CVE-2019-6263 joomla vulnerability CVSS: 3.5 16 Jan 2019, 08:29 UTC

An issue was discovered in Joomla! before 3.9.2. Inadequate checks of the Global Configuration Text Filter settings allowed stored XSS.

CVE-2019-6262 joomla vulnerability CVSS: 3.5 16 Jan 2019, 08:29 UTC

An issue was discovered in Joomla! before 3.9.2. Inadequate checks of the Global Configuration helpurl settings allowed stored XSS.

CVE-2019-6261 joomla vulnerability CVSS: 4.3 16 Jan 2019, 08:29 UTC

An issue was discovered in Joomla! before 3.9.2. Inadequate escaping in com_contact leads to a stored XSS vulnerability.

CVE-2018-17859 joomla vulnerability CVSS: 4.0 09 Oct 2018, 21:29 UTC

An issue was discovered in Joomla! before 3.8.13. Inadequate checks in com_contact could allow mail submission in disabled forms.

CVE-2018-17858 joomla vulnerability CVSS: 6.8 09 Oct 2018, 21:29 UTC

An issue was discovered in Joomla! before 3.8.13. com_installer actions do not have sufficient CSRF hardening in the backend.

CVE-2018-17857 joomla vulnerability CVSS: 4.0 09 Oct 2018, 21:29 UTC

An issue was discovered in Joomla! before 3.8.13. Inadequate checks on the tags search fields can lead to an access level violation.

CVE-2018-17856 joomla vulnerability CVSS: 6.5 09 Oct 2018, 21:29 UTC

An issue was discovered in Joomla! before 3.8.13. com_joomlaupdate allows the execution of arbitrary code. The default ACL config enabled the ability of Administrator-level users to access com_joomlaupdate and trigger code execution.

CVE-2018-17855 joomla vulnerability CVSS: 6.5 09 Oct 2018, 21:29 UTC

An issue was discovered in Joomla! before 3.8.13. If an attacker gets access to the mail account of an user who can approve admin verifications in the registration process, he can activate himself.

CVE-2018-15882 joomla vulnerability CVSS: 7.5 29 Aug 2018, 03:29 UTC

An issue was discovered in Joomla! before 3.8.12. Inadequate checks in the InputFilter class could allow specifically prepared phar files to pass the upload filter.

CVE-2018-15881 joomla vulnerability CVSS: 5.0 29 Aug 2018, 03:29 UTC

An issue was discovered in Joomla! before 3.8.12. Inadequate checks regarding disabled fields can lead to an ACL violation.

CVE-2018-15880 joomla vulnerability CVSS: 3.5 29 Aug 2018, 03:29 UTC

An issue was discovered in Joomla! before 3.8.12. Inadequate output filtering on the user profile page could lead to a stored XSS attack.

CVE-2018-12712 joomla vulnerability CVSS: 6.5 26 Jun 2018, 19:29 UTC

An issue was discovered in Joomla! 2.5.0 through 3.8.8 before 3.8.9. The autoload code checks classnames to be valid, using the "class_exists" function in PHP. In PHP 5.3, this function validates invalid names as valid, which can result in a Local File Inclusion.

CVE-2018-12711 joomla vulnerability CVSS: 4.3 26 Jun 2018, 19:29 UTC

An XSS issue was discovered in the language switcher module in Joomla! 1.6.0 through 3.8.8 before 3.8.9. In some cases, the link of the current language might contain unescaped HTML special characters. This may lead to reflective XSS via injection of arbitrary parameters and/or values on the current page URL.

CVE-2018-6378 joomla vulnerability CVSS: 4.3 22 May 2018, 15:29 UTC

In Joomla! Core before 3.8.8, inadequate filtering of file and folder names leads to various XSS attack vectors in the media manager.

CVE-2018-11328 joomla vulnerability CVSS: 2.6 22 May 2018, 15:29 UTC

An issue was discovered in Joomla! Core before 3.8.8. Under specific circumstances (a redirect issued with a URI containing a username and password when the Location: header cannot be used), a lack of escaping the user-info component of the URI could result in an XSS vulnerability.

CVE-2018-11327 joomla vulnerability CVSS: 4.0 22 May 2018, 15:29 UTC

An issue was discovered in Joomla! Core before 3.8.8. Inadequate checks allowed users to see the names of tags that were either unpublished or published with restricted view permission.

CVE-2018-11326 joomla vulnerability CVSS: 3.5 22 May 2018, 15:29 UTC

An issue was discovered in Joomla! Core before 3.8.8. Inadequate input filtering leads to a multiple XSS vulnerabilities. Additionally, the default filtering settings could potentially allow users of the default Administrator user group to perform a XSS attack.

CVE-2018-11325 joomla vulnerability CVSS: 5.0 22 May 2018, 15:29 UTC

An issue was discovered in Joomla! Core before 3.8.8. The web install application would autofill password fields after either a form validation error or navigating to a previous install step, and display the plaintext password for the administrator account at the confirmation screen.

CVE-2018-11324 joomla vulnerability CVSS: 4.3 22 May 2018, 15:29 UTC

An issue was discovered in Joomla! Core before 3.8.8. A long running background process, such as remote checks for core or extension updates, could create a race condition where a session that was expected to be destroyed would be recreated.

CVE-2018-11323 joomla vulnerability CVSS: 6.5 22 May 2018, 15:29 UTC

An issue was discovered in Joomla! Core before 3.8.8. Inadequate checks allowed users to modify the access levels of user groups with higher permissions.

CVE-2018-11322 joomla vulnerability CVSS: 6.0 22 May 2018, 15:29 UTC

An issue was discovered in Joomla! Core before 3.8.8. Depending on the server configuration, PHAR files might be handled as executable PHP scripts by the webserver.

CVE-2018-11321 joomla vulnerability CVSS: 4.0 22 May 2018, 15:29 UTC

An issue was discovered in com_fields in Joomla! Core before 3.8.8. Inadequate filtering allows users authorised to create custom fields to manipulate the filtering options and inject an unvalidated option.

CVE-2018-8045 joomla vulnerability CVSS: 6.5 15 Mar 2018, 01:29 UTC

In Joomla! 3.5.0 through 3.8.5, the lack of type casting of a variable in a SQL statement leads to a SQL injection vulnerability in the User Notes list view.

CVE-2018-6380 joomla vulnerability CVSS: 4.3 30 Jan 2018, 17:29 UTC

In Joomla! before 3.8.4, lack of escaping in the module chromes leads to XSS vulnerabilities in the module system.

CVE-2018-6379 joomla vulnerability CVSS: 4.3 30 Jan 2018, 17:29 UTC

In Joomla! before 3.8.4, inadequate input filtering in the Uri class (formerly JUri) leads to an XSS vulnerability.

CVE-2018-6377 joomla vulnerability CVSS: 4.3 30 Jan 2018, 17:29 UTC

In Joomla! before 3.8.4, inadequate input filtering in com_fields leads to an XSS vulnerability in multiple field types, i.e., list, radio, and checkbox

CVE-2018-6376 joomla vulnerability CVSS: 7.5 30 Jan 2018, 17:29 UTC

In Joomla! before 3.8.4, the lack of type casting of a variable in a SQL statement leads to a SQL injection vulnerability in the Hathor postinstall message.

CVE-2017-16634 joomla vulnerability CVSS: 7.5 10 Nov 2017, 02:29 UTC

In Joomla! before 3.8.2, a bug allowed third parties to bypass a user's 2-factor authentication method.

CVE-2017-16633 joomla vulnerability CVSS: 4.0 10 Nov 2017, 02:29 UTC

In Joomla! before 3.8.2, a logic bug in com_fields exposed read-only information about a site's custom fields to unauthorized users.

CVE-2017-14596 joomla vulnerability CVSS: 5.0 20 Sep 2017, 18:29 UTC

In Joomla! before 3.8.0, inadequate escaping in the LDAP authentication plugin can result in a disclosure of a username and password.

CVE-2017-14595 joomla vulnerability CVSS: 4.3 20 Sep 2017, 18:29 UTC

In Joomla! before 3.8.0, a logic bug in a SQL query could lead to the disclosure of article intro texts when these articles are in the archived state.

CVE-2015-5608 joomla vulnerability CVSS: 5.8 20 Sep 2017, 18:29 UTC

Open redirect vulnerability in Joomla! CMS 3.0.0 through 3.4.1.

CVE-2017-11364 joomla vulnerability CVSS: 6.5 02 Aug 2017, 14:29 UTC

The CMS installer in Joomla! before 3.7.4 does not verify a user's ownership of a webspace, which allows remote authenticated users to gain control of the target application by leveraging Certificate Transparency logs.

CVE-2017-11612 joomla vulnerability CVSS: 4.3 26 Jul 2017, 15:29 UTC

In Joomla! before 3.7.4, inadequate filtering of potentially malicious HTML tags leads to XSS vulnerabilities in various components.

CVE-2017-9934 joomla vulnerability CVSS: 4.3 17 Jul 2017, 21:29 UTC

Missing CSRF token checks and improper input validation in Joomla! CMS 1.7.3 through 3.7.2 lead to an XSS vulnerability.

CVE-2017-9933 joomla vulnerability CVSS: 5.0 17 Jul 2017, 21:29 UTC

Improper cache invalidation in Joomla! CMS 1.7.3 through 3.7.2 leads to disclosure of form contents.

CVE-2017-8917 joomla vulnerability CVSS: 7.5 17 May 2017, 23:29 UTC

SQL injection vulnerability in Joomla! 3.7.x before 3.7.1 allows attackers to execute arbitrary SQL commands via unspecified vectors.

CVE-2017-8057 joomla vulnerability CVSS: 5.0 25 Apr 2017, 18:59 UTC

In Joomla! 3.4.0 through 3.6.5 (fixed in 3.7.0), multiple files caused full path disclosures on systems with enabled error reporting.

CVE-2017-7989 joomla vulnerability CVSS: 4.0 25 Apr 2017, 18:59 UTC

In Joomla! 3.2.0 through 3.6.5 (fixed in 3.7.0), inadequate MIME type checks allowed low-privilege users to upload swf files even if they were explicitly forbidden.

CVE-2017-7988 joomla vulnerability CVSS: 5.0 25 Apr 2017, 18:59 UTC

In Joomla! 1.6.0 through 3.6.5 (fixed in 3.7.0), inadequate filtering of form contents allows overwriting the author of an article.

CVE-2017-7987 joomla vulnerability CVSS: 4.3 25 Apr 2017, 18:59 UTC

In Joomla! 3.2.0 through 3.6.5 (fixed in 3.7.0), inadequate escaping of file and folder names leads to XSS vulnerabilities in the template manager component.

CVE-2017-7986 joomla vulnerability CVSS: 4.3 25 Apr 2017, 18:59 UTC

In Joomla! 1.5.0 through 3.6.5 (fixed in 3.7.0), inadequate filtering of specific HTML attributes leads to XSS vulnerabilities in various components.

CVE-2017-7985 joomla vulnerability CVSS: 4.3 25 Apr 2017, 18:59 UTC

In Joomla! 1.5.0 through 3.6.5 (fixed in 3.7.0), inadequate filtering of multibyte characters leads to XSS vulnerabilities in various components.

CVE-2017-7984 joomla vulnerability CVSS: 4.3 25 Apr 2017, 18:59 UTC

In Joomla! 3.2.0 through 3.6.5 (fixed in 3.7.0), inadequate filtering leads to XSS in the template manager component.

CVE-2017-7983 joomla vulnerability CVSS: 5.0 25 Apr 2017, 18:59 UTC

In Joomla! 1.5.0 through 3.6.5 (fixed in 3.7.0), mail sent using the JMail API leaked the used PHPMailer version in the mail headers.

CVE-2016-9081 joomla vulnerability CVSS: 7.5 23 Jan 2017, 21:59 UTC

Joomla! 3.4.4 through 3.6.3 allows attackers to reset username, password, and user group assignments and possibly perform other user account modifications via unspecified vectors.

CVE-2016-10045 joomla vulnerability CVSS: 7.5 30 Dec 2016, 19:59 UTC

The isMail transport in PHPMailer before 5.2.20 might allow remote attackers to pass extra parameters to the mail command and consequently execute arbitrary code by leveraging improper interaction between the escapeshellarg function and internal escaping performed in the mail function in PHP. NOTE: this vulnerability exists because of an incorrect fix for CVE-2016-10033.

CVE-2016-10033 joomla vulnerability CVSS: 7.5 30 Dec 2016, 19:59 UTC

The mailSend function in the isMail transport in PHPMailer before 5.2.18 might allow remote attackers to pass extra parameters to the mail command and consequently execute arbitrary code via a \" (backslash double quote) in a crafted Sender property.

CVE-2016-9838 joomla vulnerability CVSS: 5.0 16 Dec 2016, 09:59 UTC

An issue was discovered in components/com_users/models/registration.php in Joomla! before 3.6.5. Incorrect filtering of registration form data stored to the session on a validation error enables a user to gain access to a registered user's account and reset the user's group mappings, username, and password, as demonstrated by submitting a form that targets the `registration.register` task.

CVE-2016-9837 joomla vulnerability CVSS: 5.0 16 Dec 2016, 09:59 UTC

An issue was discovered in templates/beez3/html/com_content/article/default.php in Joomla! before 3.6.5. Inadequate permissions checks in the Beez3 layout override of the com_content article view allow users to view articles that should not be publicly accessible, as demonstrated by an index.php?option=com_content&view=article&id=1&template=beez3 request.

CVE-2016-9836 joomla vulnerability CVSS: 7.5 05 Dec 2016, 17:59 UTC

The file scanning mechanism of JFilterInput::isFileSafe() in Joomla! CMS before 3.6.5 does not consider alternative PHP file extensions when checking uploaded files for PHP content, which enables a user to upload and execute files with the `.php6`, `.php7`, `.phtml`, and `.phpt` extensions. Additionally, JHelperMedia::canUpload() did not blacklist these file extensions as uploadable file types.

CVE-2016-8870 joomla vulnerability CVSS: 6.8 04 Nov 2016, 21:59 UTC

The register method in the UsersModelRegistration class in controllers/user.php in the Users component in Joomla! before 3.6.4, when registration has been disabled, allows remote attackers to create user accounts by leveraging failure to check the Allow User Registration configuration setting.

CVE-2016-8869 joomla vulnerability CVSS: 7.5 04 Nov 2016, 21:59 UTC

The register method in the UsersModelRegistration class in controllers/user.php in the Users component in Joomla! before 3.6.4 allows remote attackers to gain privileges by leveraging incorrect use of unfiltered data when registering on a site.

CVE-2015-8769 joomla vulnerability CVSS: 7.5 12 Jan 2016, 20:59 UTC

SQL injection vulnerability in Joomla! 3.x before 3.4.7 allows attackers to execute arbitrary SQL commands via unspecified vectors.

CVE-2015-8566 joomla vulnerability CVSS: 7.5 16 Dec 2015, 21:59 UTC

The Session package 1.x before 1.3.1 for Joomla! Framework allows remote attackers to execute arbitrary code via unspecified session values.

CVE-2015-8565 joomla vulnerability CVSS: 7.5 16 Dec 2015, 21:59 UTC

Directory traversal vulnerability in Joomla! 3.2.0 through 3.3.x and 3.4.x before 3.4.6 allows remote attackers to have unspecified impact via unknown vectors.

CVE-2015-8564 joomla vulnerability CVSS: 7.5 16 Dec 2015, 21:59 UTC

Directory traversal vulnerability in Joomla! 3.4.x before 3.4.6 allows remote attackers to have unspecified impact via directory traversal sequences in the XML install file in an extension package archive.

CVE-2015-8563 joomla vulnerability CVSS: 6.8 16 Dec 2015, 21:59 UTC

Cross-site request forgery (CSRF) vulnerability in the com_templates component in Joomla! 3.2.0 through 3.3.x and 3.4.x before 3.4.6 allows remote attackers to hijack the authentication of unspecified victims via unknown vectors.

CVE-2015-8562 joomla vulnerability CVSS: 7.5 16 Dec 2015, 21:59 UTC

Joomla! 1.5.x, 2.x, and 3.x before 3.4.6 allow remote attackers to conduct PHP object injection attacks and execute arbitrary PHP code via the HTTP User-Agent header, as exploited in the wild in December 2015.

CVE-2015-7899 joomla vulnerability CVSS: 5.0 29 Oct 2015, 20:59 UTC

The com_content component in Joomla! 3.x before 3.4.5 does not properly check ACLs, which allows remote attackers to obtain sensitive information via unspecified vectors.

CVE-2015-7859 joomla vulnerability CVSS: 5.0 29 Oct 2015, 20:59 UTC

The com_contenthistory component in Joomla! 3.2 before 3.4.5 does not properly check ACLs, which allows remote attackers to obtain sensitive information via unspecified vectors.

CVE-2015-7858 joomla vulnerability CVSS: 7.5 29 Oct 2015, 20:59 UTC

SQL injection vulnerability in Joomla! 3.2 before 3.4.4 allows remote attackers to execute arbitrary SQL commands via unspecified vectors, a different vulnerability than CVE-2015-7297.

CVE-2015-7857 joomla vulnerability CVSS: 7.5 29 Oct 2015, 20:59 UTC

SQL injection vulnerability in the getListQuery function in administrator/components/com_contenthistory/models/history.php in Joomla! 3.2 before 3.4.5 allows remote attackers to execute arbitrary SQL commands via the list[select] parameter to index.php.

CVE-2015-7297 joomla vulnerability CVSS: 7.5 29 Oct 2015, 20:59 UTC

SQL injection vulnerability in Joomla! 3.2 before 3.4.4 allows remote attackers to execute arbitrary SQL commands via unspecified vectors, a different vulnerability than CVE-2015-7858.

CVE-2015-6939 joomla vulnerability CVSS: 4.3 18 Sep 2015, 16:59 UTC

Cross-site scripting (XSS) vulnerability in the login module in Joomla! 3.4.x before 3.4.4 allows remote attackers to inject arbitrary web script or HTML via unspecified vectors.

CVE-2015-5397 joomla vulnerability CVSS: 6.8 14 Jul 2015, 16:59 UTC

Cross-site request forgery (CSRF) vulnerability in Joomla! 3.2.0 through 3.3.x and 3.4.x before 3.4.2 allows remote attackers to hijack the authentication of unspecified victims for requests that upload code via unknown vectors.

CVE-2015-4654 joomla vulnerability CVSS: 7.5 18 Jun 2015, 18:59 UTC

SQL injection vulnerability in the EQ Event Calendar component for Joomla! allows remote attackers to execute arbitrary SQL commands via the id parameter to eqfullevent.

CVE-2014-7228 joomla vulnerability CVSS: 7.5 03 Nov 2014, 22:55 UTC

Akeeba Restore (restore.php), as used in Joomla! 2.5.4 through 2.5.25, 3.x through 3.2.5, and 3.3.0 through 3.3.4; Akeeba Backup for Joomla! Professional 3.0.0 through 4.0.2; Backup Professional for WordPress 1.0.b1 through 1.1.3; Solo 1.0.b1 through 1.1.2; Admin Tools Core and Professional 2.0.0 through 2.4.4; and CMS Update 1.0.a1 through 1.0.1, when performing a backup or update for an archive, does not delete parameters from $_GET and $_POST when it is cleansing $_REQUEST, but later accesses $_GET and $_POST using the getQueryParam function, which allows remote attackers to bypass encryption and execute arbitrary code via a command message that extracts a crafted archive.

CVE-2012-2413 joomla vulnerability CVSS: 4.3 20 Oct 2014, 14:55 UTC

Cross-site scripting (XSS) vulnerability in the ja_purity template for Joomla! 1.5.26 and earlier allows remote attackers to inject arbitrary web script or HTML via the Mod* cookie parameter to html/modules.php.

CVE-2014-7984 joomla vulnerability CVSS: 7.5 08 Oct 2014, 19:55 UTC

Joomla! CMS 2.5.x before 2.5.19 and 3.x before 3.2.3 allows remote attackers to authenticate and bypass intended restrictions via vectors involving GMail authentication.

CVE-2014-7983 joomla vulnerability CVSS: 4.3 08 Oct 2014, 19:55 UTC

Cross-site scripting (XSS) vulnerability in com_contact in Joomla! CMS 3.1.2 through 3.2.x before 3.2.3 allows remote attackers to inject arbitrary web script or HTML via unspecified vectors.

CVE-2014-7982 joomla vulnerability CVSS: 4.3 08 Oct 2014, 19:55 UTC

Cross-site scripting (XSS) vulnerability in Joomla! CMS 2.5.x before 2.5.19 and 3.x before 3.2.3 allows remote attackers to inject arbitrary web script or HTML via unspecified vectors.

CVE-2014-7981 joomla vulnerability CVSS: 7.5 08 Oct 2014, 19:55 UTC

SQL injection vulnerability in Joomla! CMS 3.1.x and 3.2.x before 3.2.3 allows remote attackers to execute arbitrary SQL commands via unspecified vectors.

CVE-2014-7229 joomla vulnerability CVSS: 5.0 08 Oct 2014, 19:55 UTC

Unspecified vulnerability in Joomla! before 2.5.4 before 2.5.26, 3.x before 3.2.6, and 3.3.x before 3.3.5 allows attackers to cause a denial of service via unspecified vectors.

CVE-2014-6632 joomla vulnerability CVSS: 7.5 08 Oct 2014, 19:55 UTC

Joomla! 2.5.x before 2.5.25, 3.x before 3.2.4, and 3.3.x before 3.3.4 allows remote attackers to authenticate and bypass intended access restrictions via vectors involving LDAP authentication.

CVE-2014-6631 joomla vulnerability CVSS: 4.3 08 Oct 2014, 19:55 UTC

Cross-site scripting (XSS) vulnerability in com_media in Joomla! 3.2.x before 3.2.5 and 3.3.x before 3.3.4 allows remote attackers to inject arbitrary web script or HTML via unspecified vectors.

CVE-2014-0794 joomla vulnerability CVSS: 4.3 26 Jan 2014, 20:55 UTC

SQL injection vulnerability in the JV Comment (com_jvcomment) component before 3.0.3 for Joomla! allows remote authenticated users to execute arbitrary SQL commands via the id parameter in a comment.like action to index.php.

CVE-2013-5583 joomla vulnerability CVSS: 4.3 29 Dec 2013, 04:25 UTC

Cross-site scripting (XSS) vulnerability in libraries/idna_convert/example.php in Joomla! 3.1.5 allows remote attackers to inject arbitrary web script or HTML via the lang parameter.

CVE-2013-5576 joomla vulnerability CVSS: 6.8 09 Oct 2013, 14:54 UTC

administrator/components/com_media/helpers/media.php in the media manager in Joomla! 2.5.x before 2.5.14 and 3.x before 3.1.5 allows remote authenticated users or remote attackers to bypass intended access restrictions and upload files with dangerous extensions via a filename with a trailing . (dot), as exploited in the wild in August 2013.

CVE-2013-3267 joomla vulnerability CVSS: 4.3 03 May 2013, 11:57 UTC

Cross-site scripting (XSS) vulnerability in the highlighter plugin in Joomla! 2.5.x before 2.5.10 and 3.0.x before 3.0.4 allows remote attackers to inject arbitrary web script or HTML via unspecified vectors.

CVE-2013-3242 joomla vulnerability CVSS: 5.5 03 May 2013, 11:57 UTC

plugins/system/remember/remember.php in Joomla! 2.5.x before 2.5.10 and 3.0.x before 3.0.4 does not properly handle an object obtained by unserializing a cookie, which allows remote authenticated users to conduct PHP object injection attacks and cause a denial of service via unspecified vectors.

CVE-2013-3059 joomla vulnerability CVSS: 4.3 03 May 2013, 11:57 UTC

Cross-site scripting (XSS) vulnerability in the Voting plugin in Joomla! 2.5.x before 2.5.10 and 3.0.x before 3.0.4 allows remote attackers to inject arbitrary web script or HTML via unspecified vectors.

CVE-2013-3058 joomla vulnerability CVSS: 4.3 03 May 2013, 11:57 UTC

Cross-site scripting (XSS) vulnerability in Joomla! 2.5.x before 2.5.10 and 3.0.x before 3.0.4 allows remote attackers to inject arbitrary web script or HTML via unspecified vectors.

CVE-2013-3057 joomla vulnerability CVSS: 4.0 03 May 2013, 11:57 UTC

Joomla! 2.5.x before 2.5.10 and 3.0.x before 3.0.4 allows remote authenticated users to bypass intended privilege requirements and list the privileges of arbitrary users via unspecified vectors.

CVE-2013-3056 joomla vulnerability CVSS: 4.0 03 May 2013, 11:57 UTC

Joomla! 2.5.x before 2.5.10 and 3.0.x before 3.0.4 allows remote authenticated users to bypass intended privilege requirements and delete the private messages of arbitrary users via unspecified vectors.

CVE-2013-1455 joomla vulnerability CVSS: 5.0 13 Feb 2013, 01:55 UTC

Joomla! 3.0.x through 3.0.2 allows attackers to obtain sensitive information via unspecified vectors related to an "Undefined variable."

CVE-2013-1454 joomla vulnerability CVSS: 5.0 13 Feb 2013, 01:55 UTC

Joomla! 3.0.x through 3.0.2 allows attackers to obtain sensitive information via unspecified vectors related to "Coding errors."

CVE-2013-1453 joomla vulnerability CVSS: 7.5 13 Feb 2013, 01:55 UTC

plugins/system/highlight/highlight.php in Joomla! 3.0.x through 3.0.2 and 2.5.x through 2.5.8 allows attackers to unserialize arbitrary PHP objects to obtain sensitive information, delete arbitrary directories, conduct SQL injection attacks, and possibly have other impacts via the highlight parameter. Note: it was originally reported that this issue only allowed attackers to obtain sensitive information, but later analysis demonstrated that other attacks exist.

CVE-2012-1599 joomla vulnerability CVSS: 5.0 03 Dec 2012, 21:55 UTC

Joomla! 1.5.x before 1.5.26 does not properly check permissions, which allows attackers to obtain sensitive "administrative back end information" via unknown vectors. NOTE: this might be a duplicate of CVE-2012-1611.

CVE-2012-1598 joomla vulnerability CVSS: 7.5 03 Dec 2012, 21:55 UTC

Joomla! 1.5.x before 1.5.26 has unspecified impact and attack vectors related to "insufficient randomness" and a "password reset vulnerability."

CVE-2012-5827 joomla vulnerability CVSS: 4.3 11 Nov 2012, 13:01 UTC

Joomla! 2.5.x before 2.5.8 and 3.0.x before 3.0.2 allows remote attackers to conduct clickjacking attacks via unspecified vectors involving "Inadequate protection."

CVE-2012-4532 joomla vulnerability CVSS: 4.3 31 Oct 2012, 16:55 UTC

Cross-site scripting (XSS) vulnerability in modules/mod_languages/tmpl/default.php in the Language Switcher module for Joomla! 2.5.x before 2.5.7 allows remote attackers to inject arbitrary web script or HTML via the PATH_INFO to index.php. NOTE: some of these details are obtained from third party information.

CVE-2012-4531 joomla vulnerability CVSS: 4.3 31 Oct 2012, 16:55 UTC

Cross-site scripting (XSS) vulnerability in Joomla! 2.5.x before 2.5.7 allows remote attackers to inject arbitrary web script or HTML via unspecified vectors.

CVE-2012-5455 joomla vulnerability CVSS: 4.3 22 Oct 2012, 23:55 UTC

Cross-site scripting (XSS) vulnerability in the language search component in Joomla! before 3.0.1 allows remote attackers to inject arbitrary web script or HTML via unspecified vectors, related to a "typographical error."

CVE-2011-4911 joomla vulnerability CVSS: 5.0 07 Oct 2012, 21:55 UTC

Joomla! before 1.5.12 does not perform a JEXEC check in unspecified files, which allows remote attackers to obtain the installation path via unspecified vectors.

CVE-2011-4910 joomla vulnerability CVSS: 4.3 07 Oct 2012, 21:55 UTC

Cross-site scripting (XSS) vulnerability in Joomla! before 1.5.12 allows remote attackers to inject arbitrary web script or HTML via the PATH_INFO.

CVE-2011-4909 joomla vulnerability CVSS: 4.3 07 Oct 2012, 21:55 UTC

Multiple cross-site scripting (XSS) vulnerabilities in Joomla! before 1.5.12 allow remote attackers to inject arbitrary web script or HTML via the HTTP_REFERER header to (1) components/com_content/views/article/tmpl/form.php, (2) components/com_user/controller.php, (3) plugins/system/legacy/html.php, or (4) templates/beez/html/com_content/article/form.php.

CVE-2012-1117 joomla vulnerability CVSS: 4.3 26 Sep 2012, 00:55 UTC

Cross-site scripting (XSS) vulnerability in Joomla! 2.5.0 and 2.5.1 allows remote attackers to inject arbitrary web script or HTML via unspecified vectors.

CVE-2012-1116 joomla vulnerability CVSS: 7.5 26 Sep 2012, 00:55 UTC

SQL injection vulnerability in Joomla! 1.7.x and 2.5.x before 2.5.2 allows remote attackers to execute arbitrary SQL commands via unspecified vectors.

CVE-2012-1612 joomla vulnerability CVSS: 4.3 06 Sep 2012, 21:55 UTC

Cross-site scripting (XSS) vulnerability in the update manager in Joomla! 2.5.x before 2.5.4 allows remote attackers to inject arbitrary web script or HTML via unspecified vectors.

CVE-2012-1611 joomla vulnerability CVSS: 5.0 06 Sep 2012, 21:55 UTC

Joomla! 2.5.x before 2.5.4 does not properly check permissions, which allows attackers to obtain sensitive "administrative back end" information via unknown attack vectors. NOTE: this might be a duplicate of CVE-2012-1599.

CVE-2012-0837 joomla vulnerability CVSS: 5.0 06 Sep 2012, 19:55 UTC

Joomla! 1.7.x before 1.7.5 and 2.5.x before 2.5.1 allows attackers to obtain the installation path via unspecified vectors related to "administrator."

CVE-2012-0836 joomla vulnerability CVSS: 5.0 06 Sep 2012, 19:55 UTC

Unspecified vulnerability in Joomla! 1.7.x before 1.7.5 allows attackers to read the error log via unknown vectors.

CVE-2012-0835 joomla vulnerability CVSS: 5.0 06 Sep 2012, 19:55 UTC

Unspecified vulnerability in Joomla! 1.7.x before 1.7.5 and 2.5.x before 2.5.1 allows attackers to obtain sensitive information via unknown vectors related to "administrator."

CVE-2012-0822 joomla vulnerability CVSS: 4.3 06 Sep 2012, 19:55 UTC

Cross-site scripting (XSS) vulnerability in Joomla! 1.6 and 1.7.x before 1.7.4 allows remote attackers to inject arbitrary web script or HTML via unspecified vectors, a different vulnerability than CVE-2012-0820.

CVE-2012-0821 joomla vulnerability CVSS: 5.0 06 Sep 2012, 19:55 UTC

Unspecified vulnerability in Joomla! 1.6.x and 1.7.x before 1.7.4 allows remote attackers to obtain sensitive information via unknown vectors, a different vulnerability than CVE-2012-0819.

CVE-2012-0820 joomla vulnerability CVSS: 4.3 06 Sep 2012, 19:55 UTC

Cross-site scripting (XSS) vulnerability in Joomla! 1.6.x and 1.7.x before 1.7.4 allows remote attackers to inject arbitrary web script or HTML via unspecified vectors, a different vulnerability than CVE-2012-0822.

CVE-2012-0819 joomla vulnerability CVSS: 5.0 06 Sep 2012, 19:55 UTC

Unspecified vulnerability in Joomla! 1.6.x and 1.7.x before 1.7.4 allows remote attackers to obtain sensitive information via unknown vectors, a different vulnerability than CVE-2012-0821.

CVE-2012-3829 joomla vulnerability CVSS: 5.0 03 Jul 2012, 22:55 UTC

Joomla! 2.5.3 allows remote attackers to obtain the installation path via the Host HTTP Header.

CVE-2012-3828 joomla vulnerability CVSS: 4.3 03 Jul 2012, 22:55 UTC

Cross-site scripting (XSS) vulnerability in Joomla! 2.5.3 allows remote attackers to inject arbitrary web script or HTML via the Host HTTP Header.

CVE-2012-2748 joomla vulnerability CVSS: 5.0 03 Jul 2012, 19:55 UTC

Unspecified vulnerability in Joomla! 2.5.x before 2.5.5 allows remote attackers to obtain sensitive information via vectors related to "Inadequate filtering" and a "SQL error."

CVE-2012-2747 joomla vulnerability CVSS: 7.5 03 Jul 2012, 19:55 UTC

Unspecified vulnerability in Joomla! 2.5.x before 2.5.5 allows remote attackers to gain privileges via unknown attack vectors related to "Inadequate checking."

CVE-2011-4332 joomla vulnerability CVSS: 4.3 23 Nov 2011, 18:55 UTC

Multiple cross-site scripting (XSS) vulnerabilities in Joomla! 1.6.3 and earlier allow remote attackers to inject arbitrary web script or HTML via unspecified vectors.

CVE-2011-4321 joomla vulnerability CVSS: 5.0 23 Nov 2011, 18:55 UTC

The password reset functionality in Joomla! 1.5.x through 1.5.24 uses weak random numbers, which makes it easier for remote attackers to change the passwords of arbitrary users via unspecified vectors.

CVE-2010-4945 joomla vulnerability CVSS: 7.5 09 Oct 2011, 10:55 UTC

SQL injection vulnerability in the CamelcityDB (com_camelcitydb2) component 2.2 for Joomla! allows remote attackers to execute arbitrary SQL commands via the id parameter to index.php.

CVE-2010-4944 joomla vulnerability CVSS: 7.5 09 Oct 2011, 10:55 UTC

SQL injection vulnerability in the Elite Experts (com_elite_experts) component for Mambo and Joomla! allows remote attackers to execute arbitrary SQL commands via the id parameter in a showExpertProfileDetailed action to index.php.

CVE-2010-4938 joomla vulnerability CVSS: 7.5 09 Oct 2011, 10:55 UTC

SQL injection vulnerability in the Weblinks (com_weblinks) component in Joomla! allows remote attackers to execute arbitrary SQL commands via the Itemid parameter in a categories action to index.php. NOTE: the provenance of this information is unknown; the details are obtained solely from third party information.

CVE-2011-3747 joomla vulnerability CVSS: 5.0 23 Sep 2011, 23:55 UTC

Joomla! 1.6.0 allows remote attackers to obtain sensitive information via a direct request to a .php file, which reveals the installation path in an error message, as demonstrated by libraries/phpmailer/language/phpmailer.lang-joomla.php.

CVE-2011-2892 joomla vulnerability CVSS: 4.3 27 Jul 2011, 20:55 UTC

Joomla! 1.6.x before 1.6.2 does not prevent page rendering inside a frame in a third-party HTML document, which makes it easier for remote attackers to conduct clickjacking attacks via a crafted web site.

CVE-2011-2891 joomla vulnerability CVSS: 5.0 27 Jul 2011, 20:55 UTC

Joomla! 1.6.x before 1.6.2 allows remote attackers to obtain sensitive information via an empty Itemid array parameter to index.php, which reveals the installation path in an error message, a different vulnerability than CVE-2011-2488.

CVE-2011-2890 joomla vulnerability CVSS: 5.0 27 Jul 2011, 20:55 UTC

The MediaViewMedia class in administrator/components/com_media/views/media/view.html.php in Joomla! 1.5.23 and earlier allows remote attackers to obtain sensitive information via vectors involving the base variable, leading to disclosure of the installation path, a different vulnerability than CVE-2011-2488.

CVE-2011-2889 joomla vulnerability CVSS: 5.0 27 Jul 2011, 20:55 UTC

templates/system/error.php in Joomla! before 1.5.23 might allow remote attackers to obtain sensitive information via unspecified vectors that trigger an undefined value of a certain error field, leading to disclosure of the installation path. NOTE: this might overlap CVE-2011-2488.

CVE-2011-2710 joomla vulnerability CVSS: 4.3 27 Jul 2011, 20:55 UTC

Multiple cross-site scripting (XSS) vulnerabilities in Joomla! before 1.7.0 allow remote attackers to inject arbitrary web script or HTML via (1) the URI to includes/application.php, reachable through index.php; and, when Internet Explorer or Konqueror is used, (2) allow remote attackers to inject arbitrary web script or HTML via the searchword parameter in a search action to index.php in the com_search component. NOTE: vector 2 exists because of an incomplete fix for CVE-2011-2509.5.

CVE-2011-2509 joomla vulnerability CVSS: 4.3 27 Jul 2011, 20:55 UTC

Multiple cross-site scripting (XSS) vulnerabilities in Joomla! before 1.6.4 allow remote attackers to inject arbitrary web script or HTML via (1) the query string to the com_contact component, as demonstrated by the Itemid parameter to index.php; (2) the query string to the com_content component, as demonstrated by the filter_order parameter to index.php; (3) the query string to the com_newsfeeds component, as demonstrated by an arbitrary parameter to index.php; or (4) the option parameter in a reset.request action to index.php; and, when Internet Explorer or Konqueror is used, (5) allow remote attackers to inject arbitrary web script or HTML via the searchword parameter in a search action to index.php in the com_search component.

CVE-2011-2488 joomla vulnerability CVSS: 5.0 27 Jul 2011, 20:55 UTC

Joomla! before 1.5.23 does not properly check for errors, which allows remote attackers to obtain sensitive information via unspecified vectors.

CVE-2010-4696 joomla vulnerability CVSS: 7.5 18 Jan 2011, 18:03 UTC

Multiple SQL injection vulnerabilities in Joomla! 1.5.x before 1.5.22 allow remote attackers to execute arbitrary SQL commands via the (1) filter_order or (2) filter_order_Dir parameter in a com_contact action to index.php, a different vulnerability than CVE-2010-4166. NOTE: the provenance of this information is unknown; the details are obtained solely from third party information.

CVE-2010-4166 joomla vulnerability CVSS: 7.5 18 Jan 2011, 18:03 UTC

Multiple SQL injection vulnerabilities in Joomla! 1.5.x before 1.5.22 allow remote attackers to execute arbitrary SQL commands via (1) the filter_order parameter in a com_weblinks category action to index.php, (2) the filter_order_Dir parameter in a com_weblinks category action to index.php, or (3) the filter_order_Dir parameter in a com_messages action to administrator/index.php.

CVE-2011-0005 joomla vulnerability CVSS: 4.3 11 Jan 2011, 03:00 UTC

Cross-site scripting (XSS) vulnerability in the com_search module for Joomla! 1.0.x through 1.0.15 allows remote attackers to inject arbitrary web script or HTML via the ordering parameter to index.php.

CVE-2010-3712 joomla vulnerability CVSS: 4.3 28 Oct 2010, 00:00 UTC

Cross-site scripting (XSS) vulnerability in Joomla! 1.5.x before 1.5.21 and 1.6.x before 1.6.1 allows remote attackers to inject arbitrary web script or HTML via vectors involving "multiple encoded entities," as demonstrated by the query string to index.php in the com_weblinks or com_content component.

CVE-2010-2535 joomla vulnerability CVSS: 3.5 05 Oct 2010, 18:00 UTC

Multiple cross-site scripting (XSS) vulnerabilities in the Back End in Joomla! 1.5.x before 1.5.20 allow remote authenticated users to inject arbitrary web script or HTML via administrator screens.

CVE-2010-2681 joomla vulnerability CVSS: 7.5 12 Jul 2010, 13:27 UTC

PHP remote file inclusion vulnerability in the SEF404x (com_sef) component for Joomla! allows remote attackers to execute arbitrary PHP code via a URL in the mosConfig.absolute.path parameter to index.php.

CVE-2010-2679 joomla vulnerability CVSS: 7.5 08 Jul 2010, 22:30 UTC

SQL injection vulnerability in the Weblinks (com_weblinks) component in Joomla! allows remote attackers to execute arbitrary SQL commands via the id parameter in a view action to index.php.

CVE-2010-1649 joomla vulnerability CVSS: 4.3 08 Jun 2010, 00:30 UTC

Multiple cross-site scripting (XSS) vulnerabilities in the back end in Joomla! 1.5 through 1.5.17 allow remote attackers to inject arbitrary web script or HTML via unknown vectors related to "various administrator screens," possibly the search parameter in administrator/index.php.

CVE-2010-1739 joomla vulnerability CVSS: 7.5 06 May 2010, 18:30 UTC

SQL injection vulnerability in the Newsfeeds (com_newsfeeds) component for Joomla! allows remote attackers to execute arbitrary SQL commands via the feedid parameter in a categories action to index.php.

CVE-2010-0461 joomla vulnerability CVSS: 6.5 28 Jan 2010, 20:30 UTC

SQL injection vulnerability in the casino (com_casino) component 1.0 for Joomla! allows remote attackers to execute arbitrary SQL commands via the id parameter in a (1) category or (2) player action to index.php.

CVE-2010-0373 joomla vulnerability CVSS: 7.5 21 Jan 2010, 22:30 UTC

SQL injection vulnerability in the libros (com_libros) component for Joomla! allows remote attackers to execute arbitrary SQL commands via the id parameter in a detail action to index.php.

CVE-2009-4583 joomla vulnerability CVSS: 7.5 06 Jan 2010, 22:00 UTC

SQL injection vulnerability in the DhForum (com_dhforum) component for Joomla! allows remote attackers to execute arbitrary SQL commands via the id parameter in a grouplist action to index.php.

CVE-2009-4579 joomla vulnerability CVSS: 4.3 06 Jan 2010, 22:00 UTC

Cross-site scripting (XSS) vulnerability in the Artist avenue (com_artistavenue) component for Joomla! and Mambo allows remote attackers to inject arbitrary web script or HTML via the Itemid parameter to index.php.

CVE-2009-3946 joomla vulnerability CVSS: 5.0 16 Nov 2009, 20:30 UTC

Joomla! before 1.5.15 allows remote attackers to read an extension's XML file, and thereby obtain the extension's version number, via a direct request.

CVE-2009-3945 joomla vulnerability CVSS: 5.5 16 Nov 2009, 20:30 UTC

Unspecified vulnerability in the Front-End Editor in the com_content component in Joomla! before 1.5.15 allows remote authenticated users, with Author privileges, to replace the articles of an arbitrary user via unknown vectors.

CVE-2008-6923 joomla vulnerability CVSS: 7.5 10 Aug 2009, 18:30 UTC

SQL injection vulnerability in the content component (com_content) 1.0.0 for Joomla! allows remote attackers to execute arbitrary SQL commands via the Itemid parameter in a blogcategory action to index.php.

CVE-2008-6852 joomla vulnerability CVSS: 7.5 07 Jul 2009, 19:00 UTC

SQL injection vulnerability in the Ice Gallery (com_ice) component 0.5 beta 2 for Joomla! allows remote attackers to execute arbitrary SQL commands via the catid parameter to index.php.

CVE-2009-2239 joomla vulnerability CVSS: 7.5 27 Jun 2009, 18:48 UTC

SQL injection vulnerability in the (1) casinobase (com_casinobase), (2) casino_blackjack (com_casino_blackjack), and (3) casino_videopoker (com_casino_videopoker) components 0.3.1 for Joomla! allows remote attackers to execute arbitrary SQL commands via the Itemid parameter to index.php.

CVE-2009-2014 joomla vulnerability CVSS: 7.5 09 Jun 2009, 19:30 UTC

SQL injection vulnerability in the ComSchool (com_school) component 1.4 for Joomla! allows remote attackers to execute arbitrary SQL commands via the classid parameter in a showclass action to index.php.

CVE-2009-1940 joomla vulnerability CVSS: 4.3 05 Jun 2009, 18:30 UTC

Cross-site scripting (XSS) vulnerability in the administrator panel in the com_users core component for Joomla! 1.5.x through 1.5.10 allows remote attackers to inject arbitrary web script or HTML via unspecified vectors.

CVE-2009-1939 joomla vulnerability CVSS: 4.3 05 Jun 2009, 18:30 UTC

Cross-site scripting (XSS) vulnerability in the JA_Purity template for Joomla! 1.5.x through 1.5.10 allows remote attackers to inject arbitrary web script or HTML via unspecified vectors.

CVE-2009-1938 joomla vulnerability CVSS: 4.3 05 Jun 2009, 18:30 UTC

Cross-site scripting (XSS) vulnerability in Joomla! 1.5.x through 1.5.10 allows remote attackers to inject arbitrary web script or HTML via unspecified vectors related to database output and the frontend administrative panel.

CVE-2009-1736 joomla vulnerability CVSS: 7.5 20 May 2009, 19:30 UTC

SQL injection vulnerability in the GridSupport (GS) Ticket System (com_gsticketsystem) component for Joomla! allows remote attackers to execute arbitrary SQL commands via the catid parameter in a viewCategory action to index.php.

CVE-2009-1499 joomla vulnerability CVSS: 7.5 01 May 2009, 16:30 UTC

SQL injection vulnerability in the MailTo (aka com_mailto) component in Joomla! allows remote attackers to execute arbitrary SQL commands via the article parameter in index.php. NOTE: SecurityFocus states that this issue has been disputed by the vendor.

CVE-2009-1280 joomla vulnerability CVSS: 6.8 09 Apr 2009, 16:27 UTC

Multiple cross-site request forgery (CSRF) vulnerabilities in the com_media component for Joomla! 1.5.x through 1.5.9 allow remote attackers to hijack the authentication of unspecified victims via unknown vectors.

CVE-2009-1279 joomla vulnerability CVSS: 2.6 09 Apr 2009, 16:27 UTC

Multiple cross-site scripting (XSS) vulnerabilities in Joomla! 1.5 through 1.5.9 allow remote attackers to inject arbitrary web script or HTML via unspecified vectors to the (1) com_admin component, (2) com_search component when "Gather Search Statistics" is enabled, and (3) the category view in the com_content component.

CVE-2008-6430 joomla vulnerability CVSS: 7.5 06 Mar 2009, 18:30 UTC

SQL injection vulnerability in the MyContent (com_mycontent) component 1.1.13 for Joomla! allows remote attackers to execute arbitrary SQL commands via the id parameter in a view action to index.php.

CVE-2008-6299 joomla vulnerability CVSS: 3.5 26 Feb 2009, 16:17 UTC

Multiple cross-site scripting (XSS) vulnerabilities in Joomla! 1.5.7 and earlier allow remote authenticated users with certain privileges to inject arbitrary web script or HTML via (1) the title and description parameters to the com_weblinks module and (2) unspecified vectors in the com_content module related to "article submission."

CVE-2008-6234 joomla vulnerability CVSS: 7.5 21 Feb 2009, 01:30 UTC

SQL injection vulnerability in the com_musica module in Joomla! and Mambo allows remote attackers to execute arbitrary SQL commands via the id parameter to index.php.

CVE-2008-6182 joomla vulnerability CVSS: 7.5 19 Feb 2009, 18:30 UTC

SQL injection vulnerability in the Ignite Gallery (com_ignitegallery) component 0.8.0 through 0.8.3 for Joomla! allows remote attackers to execute arbitrary SQL commands via the gallery parameter in a view action to index.php.

CVE-2009-0421 joomla vulnerability CVSS: 7.5 05 Feb 2009, 00:30 UTC

SQL injection vulnerability in the Eventing (com_eventing) 1.6.x component for Joomla! allows remote attackers to execute arbitrary SQL commands via the catid parameter to index.php.

CVE-2009-0379 joomla vulnerability CVSS: 7.5 02 Feb 2009, 19:00 UTC

SQL injection vulnerability in the Prince Clan Chess Club (com_pcchess) component for Joomla! allows remote attackers to execute arbitrary SQL commands via the game_id parameter in a showgame action to index.php, a different vector than CVE-2008-0761.

CVE-2009-0378 joomla vulnerability CVSS: 4.3 02 Feb 2009, 19:00 UTC

Cross-site scripting (XSS) vulnerability in index.php in the beamospetition (com_beamospetition) 1.0.12 component for Joomla! allows remote attackers to inject arbitrary web script or HTML via the pet parameter in a sign action.

CVE-2009-0377 joomla vulnerability CVSS: 7.5 02 Feb 2009, 19:00 UTC

SQL injection vulnerability in the beamospetition (com_beamospetition) 1.0.12 component for Joomla! allows remote attackers to execute arbitrary SQL commands via the mpid parameter in a sign action to index.php, a different vector than CVE-2008-3132.

CVE-2009-0333 joomla vulnerability CVSS: 7.5 29 Jan 2009, 18:30 UTC

SQL injection vulnerability in the WebAmoeba (WA) Ticket System (com_waticketsystem) component for Joomla! allows remote attackers to execute arbitrary SQL commands via the catid parameter in a category action to index.php.

CVE-2009-0329 joomla vulnerability CVSS: 7.5 29 Jan 2009, 18:30 UTC

SQL injection vulnerability in the PcCookBook (com_pccookbook) component for Joomla! allows remote attackers to execute arbitrary SQL commands via the recipe_id parameter in a viewrecipe action to index.php, a different vector than CVE-2008-0844.

CVE-2009-0113 joomla vulnerability CVSS: 5.0 09 Jan 2009, 18:30 UTC

Directory traversal vulnerability in attachmentlibrary.php in the XStandard component for Joomla! 1.5.8 and earlier allows remote attackers to list arbitrary directories via a .. (dot dot) in the X_CMS_LIBRARY_PATH HTTP header.

CVE-2008-5811 joomla vulnerability CVSS: 7.5 02 Jan 2009, 18:11 UTC

SQL injection vulnerability in the PaxGallery (com_paxgallery) component 0.1 for Joomla! allows remote attackers to execute arbitrary SQL commands via the gid parameter in a table action to index.php.

CVE-2008-4122 joomla vulnerability CVSS: 5.0 19 Dec 2008, 17:30 UTC

Joomla! 1.5.8 does not set the secure flag for the session cookie in an https session, which makes it easier for remote attackers to capture this cookie by intercepting its transmission within an http session.

CVE-2008-5671 joomla vulnerability CVSS: 7.5 19 Dec 2008, 01:52 UTC

PHP remote file inclusion vulnerability in index.php in Joomla! 1.0.11 through 1.0.14, when RG_EMULATION is enabled in configuration.php, allows remote attackers to execute arbitrary PHP code via a URL in the mosConfig_absolute_path parameter.

CVE-2008-5643 joomla vulnerability CVSS: 7.5 17 Dec 2008, 18:30 UTC

SQL injection vulnerability in the Books (com_books) component for Joomla! allows remote attackers to execute arbitrary SQL commands via the book_id parameter in a book_details action to index.php.

CVE-2008-5208 joomla vulnerability CVSS: 7.5 24 Nov 2008, 17:30 UTC

SQL injection vulnerability in sub_votepic.php in the Datsogallery (com_datsogallery) module 1.6 for Joomla! allows remote attackers to execute arbitrary SQL commands via the User-Agent HTTP header.

CVE-2008-5200 joomla vulnerability CVSS: 7.5 21 Nov 2008, 17:30 UTC

SQL injection vulnerability in the Xe webtv (com_xewebtv) component for Joomla! allows remote attackers to execute arbitrary SQL commands via the id parameter in a detail action to index.php.

CVE-2008-5053 joomla vulnerability CVSS: 10.0 13 Nov 2008, 11:30 UTC

PHP remote file inclusion vulnerability in admin.rssreader.php in the Simple RSS Reader (com_rssreader) 1.0 component for Joomla! allows remote attackers to execute arbitrary PHP code via a URL in the mosConfig_live_site parameter.

CVE-2008-4777 joomla vulnerability CVSS: 7.5 29 Oct 2008, 14:22 UTC

SQL injection vulnerability in the Showroom Joomlearn LMS (com_lms) component for Joomla! and Mambo allows remote attackers to execute arbitrary SQL commands via the cat parameter in a showTests task.

CVE-2008-4668 joomla vulnerability CVSS: 9.0 22 Oct 2008, 10:30 UTC

Directory traversal vulnerability in the Image Browser (com_imagebrowser) 0.1.5 component for Joomla! allows remote attackers to include and execute arbitrary local files via a .. (dot dot) in the folder parameter to index.php.

CVE-2008-4105 joomla vulnerability CVSS: 7.5 18 Sep 2008, 17:59 UTC

JRequest in Joomla! 1.5 before 1.5.7 does not sanitize variables that were set with JRequest::setVar, which allows remote attackers to conduct "variable injection" attacks and have unspecified other impact.

CVE-2008-4104 joomla vulnerability CVSS: 5.8 18 Sep 2008, 17:59 UTC

Multiple open redirect vulnerabilities in Joomla! 1.5 before 1.5.7 allow remote attackers to redirect users to arbitrary web sites and conduct phishing attacks via a "passed in" URL.

CVE-2008-4103 joomla vulnerability CVSS: 5.0 18 Sep 2008, 17:59 UTC

The mailto (aka com_mailto) component in Joomla! 1.5 before 1.5.7 sends e-mail messages without validating the URL, which allows remote attackers to transmit spam.

CVE-2008-4102 joomla vulnerability CVSS: 7.5 18 Sep 2008, 17:59 UTC

Joomla! 1.5 before 1.5.7 initializes PHP's PRNG with a weak seed, which makes it easier for attackers to guess the pseudo-random values produced by PHP's mt_rand function, as demonstrated by guessing password reset tokens, a different vulnerability than CVE-2008-3681.

CVE-2008-3681 joomla vulnerability CVSS: 7.5 14 Aug 2008, 19:41 UTC

components/com_user/models/reset.php in Joomla! 1.5 through 1.5.5 does not properly validate reset tokens, which allows remote attackers to reset the "first enabled user (lowest id)" password, typically for the administrator.

CVE-2008-3586 joomla vulnerability CVSS: 7.5 11 Aug 2008, 23:41 UTC

SQL injection vulnerability in the EZ Store (com_ezstore) component for Joomla! allows remote attackers to execute arbitrary SQL commands via the id parameter in a detail action to index.php.

CVE-2008-3265 joomla vulnerability CVSS: 6.8 24 Jul 2008, 15:41 UTC

SQL injection vulnerability in the DT Register (com_dtregister) 2.2.3 component for Joomla! allows remote attackers to execute arbitrary SQL commands via the eventId parameter in a pay_options action to index.php.

CVE-2008-3225 joomla vulnerability CVSS: 10.0 18 Jul 2008, 16:41 UTC

Joomla! before 1.5.4 allows attackers to access administration functionality, which has unknown impact and attack vectors related to a missing "LDAP security fix."

CVE-2008-3227 joomla vulnerability CVSS: 7.5 18 Jul 2008, 16:41 UTC

Unspecified vulnerability in Joomla! before 1.5.4 has unknown impact and attack vectors related to a "User Redirect Spam fix," possibly an open redirect vulnerability.

CVE-2008-3228 joomla vulnerability CVSS: 7.5 18 Jul 2008, 16:41 UTC

Joomla! before 1.5.4 does not configure .htaccess to apply certain security checks that "block common exploits" to SEF URLs, which has unknown impact and remote attack vectors.

CVE-2008-3226 joomla vulnerability CVSS: 5.0 18 Jul 2008, 16:41 UTC

The file caching implementation in Joomla! before 1.5.4 allows attackers to access cached pages via unknown attack vectors.

CVE-2008-3132 joomla vulnerability CVSS: 7.5 10 Jul 2008, 23:41 UTC

SQL injection vulnerability in the beamospetition (com_beamospetition) component for Joomla! allows remote attackers to execute arbitrary SQL commands via the pet parameter to index.php.

CVE-2008-3083 joomla vulnerability CVSS: 7.5 09 Jul 2008, 00:41 UTC

SQL injection vulnerability in Brightcode Weblinks (com_brightweblinks) component for Joomla! allows remote attackers to execute arbitrary SQL commands via the catid parameter.

CVE-2008-2990 joomla vulnerability CVSS: 7.5 02 Jul 2008, 17:14 UTC

PHP remote file inclusion vulnerability in facileforms.frame.php in the FacileForms (com_facileforms) component 1.4.4 for Mambo and Joomla! allows remote attackers to execute arbitrary PHP code via a URL in the ff_compath parameter.

CVE-2008-2892 joomla vulnerability CVSS: 7.5 27 Jun 2008, 18:41 UTC

SQL injection vulnerability in the EXP Shop (com_expshop) component 1.0 for Joomla! allows remote attackers to execute arbitrary SQL commands via the catid parameter in a show_payment action to index.php.

CVE-2008-2692 joomla vulnerability CVSS: 7.5 13 Jun 2008, 19:41 UTC

SQL injection vulnerability in the yvComment (com_yvcomment) component 1.16.0 and earlier for Joomla! allows remote attackers to execute arbitrary SQL commands via the ArticleID parameter in a comment action to index.php.

CVE-2008-2697 joomla vulnerability CVSS: 7.5 13 Jun 2008, 19:41 UTC

SQL injection vulnerability in the Rapid Recipe (com_rapidrecipe) component 1.6.6 and 1.6.7 for Joomla! allows remote attackers to execute arbitrary SQL commands via the recipe_id parameter in a viewrecipe action to index.php.

CVE-2008-2701 joomla vulnerability CVSS: 6.8 13 Jun 2008, 19:41 UTC

SQL injection vulnerability in the GameQ (com_gameq) component 4.0 and earlier for Joomla! allows remote attackers to execute arbitrary SQL commands via the category_id parameter in a page action to index.php.

CVE-2008-2676 joomla vulnerability CVSS: 7.5 12 Jun 2008, 12:21 UTC

SQL injection vulnerability in the iJoomla News Portal (com_news_portal) component 1.0 and earlier for Joomla! allows remote attackers to execute arbitrary SQL commands via the Itemid parameter to index.php.

CVE-2008-2651 joomla vulnerability CVSS: 7.5 10 Jun 2008, 18:32 UTC

SQL injection vulnerability in the Joomla! Bulletin Board (aka Joo!BB or com_joobb) component 0.5.9 for Joomla! allows remote attackers to execute arbitrary SQL commands via the forum parameter in a forum action to index.php.

CVE-2008-2630 joomla vulnerability CVSS: 7.5 10 Jun 2008, 00:32 UTC

SQL injection vulnerability in the JooBlog (com_jb2) component 0.1.1 for Joomla! allows remote attackers to execute arbitrary SQL commands via the CategoryID parameter in a category action to index.php.

CVE-2008-2632 joomla vulnerability CVSS: 7.5 10 Jun 2008, 00:32 UTC

SQL injection vulnerability in the acctexp (com_acctexp) component 0.12.x and earlier for Joomla! allows remote attackers to execute arbitrary SQL commands via the usage parameter in a subscribe action to index.php.

CVE-2008-2633 joomla vulnerability CVSS: 7.5 10 Jun 2008, 00:32 UTC

Multiple SQL injection vulnerabilities in the EXP JoomRadio (com_joomradio) component 1.0 for Joomla! allow remote attackers to execute arbitrary SQL commands via the id parameter in a (1) show_radio or (2) show_video action to index.php.

CVE-2008-2564 joomla vulnerability CVSS: 7.5 06 Jun 2008, 18:32 UTC

SQL injection vulnerability in the JotLoader (com_jotloader) component 1.2.1.a and earlier for Joomla! allows remote attackers to execute arbitrary SQL commands via the cid parameter to index.php.

CVE-2008-2568 joomla vulnerability CVSS: 7.5 06 Jun 2008, 18:32 UTC

SQL injection vulnerability in the Simple Shop Galore (com_simpleshop) component 3.4 and earlier for Joomla! allows remote attackers to execute arbitrary SQL commands via the catid parameter in a browse action to index.php.

CVE-2008-2569 joomla vulnerability CVSS: 7.5 06 Jun 2008, 18:32 UTC

SQL injection vulnerability in the EasyBook (com_easybook) component 1.1 for Joomla! allows remote attackers to execute arbitrary SQL commands via the gbid parameter in a deleteentry action to index.php.

CVE-2008-2454 joomla vulnerability CVSS: 7.5 27 May 2008, 14:32 UTC

SQL injection vulnerability in the xsstream-dm (com_xsstream-dm) component 0.01 Beta for Joomla! allows remote attackers to execute arbitrary SQL commands via the movie parameter to index.php.

CVE-2008-2093 joomla vulnerability CVSS: 7.5 06 May 2008, 16:20 UTC

SQL injection vulnerability in the Profiler (com_comprofiler) component in Community Builder for Mambo and Joomla! allows remote attackers to execute arbitrary SQL commands via the user parameter in a userProfile action to index.php.

CVE-2008-2095 joomla vulnerability CVSS: 7.5 06 May 2008, 16:20 UTC

SQL injection vulnerability in index.php in the FlippingBook (com_flippingbook) 1.0.4 component for Joomla! allows remote attackers to execute arbitrary SQL commands via the book_id parameter.

CVE-2008-1935 joomla vulnerability CVSS: 7.5 25 Apr 2008, 06:05 UTC

SQL injection vulnerability in the Filiale 1.0.4 component for Joomla! allows remote attackers to execute arbitrary SQL commands via the idFiliale parameter.

CVE-2008-1540 joomla vulnerability CVSS: 7.5 28 Mar 2008, 18:44 UTC

SQL injection vulnerability in the Datsogallery (com_datsogallery) 1.3.1 module for Joomla! and Mambo allows remote attackers to execute arbitrary SQL commands via the id parameter in a detail action to index.php. NOTE: the provenance of this information is unknown; the details are obtained solely from third party information.

CVE-2008-1427 joomla vulnerability CVSS: 7.5 20 Mar 2008, 18:44 UTC

SQL injection vulnerability in the Joobi Acajoom (com_acajoom) 1.1.5 and 1.2.5 component for Joomla! allows remote attackers to execute arbitrary SQL commands via the mailingid parameter in a mailing view action to index.php.

CVE-2008-1297 joomla vulnerability CVSS: 7.5 12 Mar 2008, 17:44 UTC

SQL injection vulnerability in index.php in the eWriting (com_ewriting) 1.2.1 module for Mambo and Joomla! allows remote attackers to execute arbitrary SQL commands via the cat parameter in a selectcat action.

CVE-2008-1137 joomla vulnerability CVSS: 7.5 04 Mar 2008, 20:44 UTC

SQL injection vulnerability in the Garys Cookbook (com_garyscookbook) 1.1.1 and earlier component for Mambo and Joomla! allows remote attackers to execute arbitrary SQL commands via the id parameter in a detail action to index.php.

CVE-2008-0918 joomla vulnerability CVSS: 7.5 22 Feb 2008, 23:44 UTC

SQL injection vulnerability in includes/count_dl_or_link.inc.php in the astatsPRO (com_astatspro) 1.0.1 component for Joomla! allows remote attackers to execute arbitrary SQL commands via the id parameter to getfile.php, a different vector than CVE-2008-0839. NOTE: the provenance of this information is unknown; the details are obtained solely from third party information.

CVE-2008-0849 joomla vulnerability CVSS: 7.5 21 Feb 2008, 00:44 UTC

SQL injection vulnerability in index.php in the Downloads (com_downloads) component for Mambo and Joomla! allows remote attackers to execute arbitrary SQL commands via the cat parameter in a selectcat function, a different vector than CVE-2008-0652.

CVE-2008-0853 joomla vulnerability CVSS: 7.5 21 Feb 2008, 00:44 UTC

SQL injection vulnerability in the com_detail component for Joomla! and Mambo allows remote attackers to execute arbitrary SQL commands via the id parameter to index.php. NOTE: this issue might be site-specific. If so, it should not be included in CVE.

CVE-2008-0854 joomla vulnerability CVSS: 7.5 21 Feb 2008, 00:44 UTC

SQL injection vulnerability in the com_salesrep component for Joomla! and Mambo allows remote attackers to execute arbitrary SQL commands via the rid parameter in a showrep action to index.php.

CVE-2008-0855 joomla vulnerability CVSS: 7.5 21 Feb 2008, 00:44 UTC

SQL injection vulnerability in the Facile Forms (com_facileforms) component for Joomla! and Mambo allows remote attackers to execute arbitrary SQL commands via the catid parameter to index.php.

CVE-2008-0839 joomla vulnerability CVSS: 7.5 20 Feb 2008, 21:44 UTC

SQL injection vulnerability in refer.php in the astatsPRO (com_astatspro) 1.0 component for Joomla! allows remote attackers to execute arbitrary SQL commands via the id parameter.

CVE-2008-0841 joomla vulnerability CVSS: 7.5 20 Feb 2008, 21:44 UTC

SQL injection vulnerability in index.php in the Giorgio Nordo Ricette (com_ricette) 1.0 component for Joomla! and Mambo allows remote attackers to execute arbitrary SQL commands via the id parameter.

CVE-2008-0842 joomla vulnerability CVSS: 7.5 20 Feb 2008, 21:44 UTC

SQL injection vulnerability in index.php in the Classifier (com_clasifier) component for Joomla! allows remote attackers to execute arbitrary SQL commands via the cat_id parameter.

CVE-2008-0844 joomla vulnerability CVSS: 7.5 20 Feb 2008, 21:44 UTC

SQL injection vulnerability in index.php in the PccookBook (com_pccookbook) component for Joomla! allows remote attackers to execute arbitrary SQL commands via the user_id parameter.

CVE-2008-0846 joomla vulnerability CVSS: 7.5 20 Feb 2008, 21:44 UTC

SQL injection vulnerability in index.php in the com_profile component for Joomla! allows remote attackers to execute arbitrary SQL commands via the oid parameter.

CVE-2008-0833 joomla vulnerability CVSS: 7.5 20 Feb 2008, 19:44 UTC

SQL injection vulnerability in index.php in the com_galeria component for Joomla! allows remote attackers to execute arbitrary SQL commands via the id parameter in a detail action.

CVE-2008-0829 joomla vulnerability CVSS: 7.5 19 Feb 2008, 21:44 UTC

SQL injection vulnerability in jooget.php in the Joomlapixel Jooget! (com_jooget) 2.6.8 component for Joomla! and Mambo allows remote attackers to execute arbitrary SQL commands via the id parameter in a detail task.

CVE-2008-0810 joomla vulnerability CVSS: 7.5 19 Feb 2008, 02:00 UTC

SQL injection vulnerability in the com_scheduling module for Joomla! and Mambo allows remote attackers to execute arbitrary SQL commands via the id parameter.

CVE-2008-0815 joomla vulnerability CVSS: 7.5 19 Feb 2008, 02:00 UTC

SQL injection vulnerability in the com_mezun component for Joomla! allows remote attackers to execute arbitrary SQL commands via the id parameter in an edit task.

CVE-2008-0817 joomla vulnerability CVSS: 7.5 19 Feb 2008, 02:00 UTC

SQL injection vulnerability in the com_filebase component for Joomla! and Mambo allows remote attackers to execute arbitrary SQL commands via the filecatid parameter in a selectfolder action.

CVE-2008-0795 joomla vulnerability CVSS: 7.5 15 Feb 2008, 22:00 UTC

SQL injection vulnerability in index.php in the MGFi XfaQ (com_xfaq) 1.2 component for Mambo and Joomla! allows remote attackers to execute arbitrary SQL commands via the aid parameter in an answer action.

CVE-2008-0800 joomla vulnerability CVSS: 7.5 15 Feb 2008, 22:00 UTC

SQL injection vulnerability in index.php in the McQuiz (com_mcquiz) 0.9 Final component for Joomla! allows remote attackers to execute arbitrary SQL commands via the tid parameter in a user_tst_shw action.

CVE-2008-0802 joomla vulnerability CVSS: 7.5 15 Feb 2008, 22:00 UTC

SQL injection vulnerability in index.php in the MediaSlide (com_mediaslide) 0.5 component for Joomla! allows remote attackers to execute arbitrary SQL commands via the albumnum parameter in a contact action.

CVE-2008-0772 joomla vulnerability CVSS: 7.5 14 Feb 2008, 00:00 UTC

SQL injection vulnerability in index.php in the com_doc component for Joomla! and Mambo allows remote attackers to execute arbitrary SQL commands via the sid parameter in a view task.

CVE-2008-0762 joomla vulnerability CVSS: 7.5 13 Feb 2008, 21:00 UTC

SQL injection vulnerability in index.php in the com_iomezun component for Joomla! allows remote attackers to execute arbitrary SQL commands via the id parameter in an edit action.

CVE-2008-0746 joomla vulnerability CVSS: 7.5 13 Feb 2008, 20:00 UTC

SQL injection vulnerability in index.php in the Gallery (com_gallery) component for Mambo and Joomla! allows remote attackers to execute arbitrary SQL commands via the id parameter in a detail action.

CVE-2008-0752 joomla vulnerability CVSS: 7.5 13 Feb 2008, 20:00 UTC

SQL injection vulnerability in index.php in the Neogallery (com_neogallery) 1.1 component for Joomla! allows remote attackers to execute arbitrary SQL commands via the catid parameter in a show action.

CVE-2008-0754 joomla vulnerability CVSS: 7.5 13 Feb 2008, 20:00 UTC

Multiple SQL injection vulnerabilities in index.php in the Rapid Recipe (com_rapidrecipe) 1.6.5 component for Joomla! allow remote attackers to execute arbitrary SQL commands via (1) the user_id parameter in a showuser action or (2) the category_id parameter in a viewcategorysrecipes action.

CVE-2008-0670 joomla vulnerability CVSS: 7.5 12 Feb 2008, 01:00 UTC

SQL injection vulnerability in index.php in the Noticias (com_noticias) 1.0 component for Joomla! allows remote attackers to execute arbitrary SQL commands via the id parameter in a detalhe action.

CVE-2008-0686 joomla vulnerability CVSS: 7.5 12 Feb 2008, 01:00 UTC

SQL injection vulnerability in index.php in the NeoReferences (com_neoreferences) 1.3.1 and 1.3.3 component for Joomla! allows remote attackers to execute arbitrary SQL commands via the catid parameter.

CVE-2008-0689 joomla vulnerability CVSS: 7.5 12 Feb 2008, 01:00 UTC

SQL injection vulnerability in index.php in the Marketplace (com_marketplace) 1.1.1 and 1.1.1-pl1 component for Joomla! allows remote attackers to execute arbitrary SQL commands via the catid parameter in a show_category action.

CVE-2008-0690 joomla vulnerability CVSS: 7.5 12 Feb 2008, 01:00 UTC

SQL injection vulnerability in index.php in the mosDirectory (com_directory) 2.3.2 component for Joomla! allows remote attackers to execute arbitrary SQL commands via the catid parameter in a viewcat action.

CVE-2008-0652 joomla vulnerability CVSS: 7.5 07 Feb 2008, 21:00 UTC

SQL injection vulnerability in index.php in the Downloads (com_downloads) component for Mambo and Joomla! allows remote attackers to execute arbitrary SQL commands via the filecatid parameter in a selectfolder action.

CVE-2008-0653 joomla vulnerability CVSS: 7.5 07 Feb 2008, 21:00 UTC

SQL injection vulnerability in index.php in the Ynews (com_ynews) 1.0.0 component for Joomla! allows remote attackers to execute arbitrary SQL commands via the id parameter in a showYNews action.

CVE-2008-0603 joomla vulnerability CVSS: 7.5 06 Feb 2008, 12:00 UTC

SQL injection vulnerability in index.php in the amazOOP Awesom! (com_awesom) 0.3.2component for Mambo and Joomla! allows remote attackers to execute arbitrary SQL commands via the listid parameter in a viewlist task.

CVE-2008-0606 joomla vulnerability CVSS: 7.5 06 Feb 2008, 12:00 UTC

SQL injection vulnerability in index.php in the Shambo2 (com_shambo2) component for Mambo and Joomla! allows remote attackers to execute arbitrary SQL commands via the Itemid parameter.

CVE-2008-0607 joomla vulnerability CVSS: 7.5 06 Feb 2008, 12:00 UTC

SQL injection vulnerability in index.php in the Sigsiu Online Business Index 2 (SOBI2, com_sobi2) 2.5.3 component for Joomla! and Mambo allows remote attackers to execute arbitrary SQL commands via the catid parameter. NOTE: the provenance of this information is unknown; the details are obtained solely from third party information.

CVE-2008-0579 joomla vulnerability CVSS: 7.5 05 Feb 2008, 03:00 UTC

SQL injection vulnerability in index.php in the buslicense (com_buslicense) component for Joomla! allows remote attackers to execute arbitrary SQL commands via the aid parameter in a list action.

CVE-2008-0561 joomla vulnerability CVSS: 7.5 04 Feb 2008, 23:00 UTC

SQL injection vulnerability in index.php in the Arthur Konze AkoGallery (com_akogallery) 2.5 beta component for Mambo and Joomla! allows remote attackers to execute arbitrary SQL commands via the id parameter in a detail action.

CVE-2008-0510 joomla vulnerability CVSS: 7.5 31 Jan 2008, 20:00 UTC

SQL injection vulnerability in index.php in the Newsletter (com_newsletter) component for Mambo 4.5 and Joomla! allows remote attackers to execute arbitrary SQL commands via the listid parameter.

CVE-2008-0511 joomla vulnerability CVSS: 7.5 31 Jan 2008, 20:00 UTC

SQL injection vulnerability in index.php in the MaMML (com_mamml) component for Mambo and Joomla! allows remote attackers to execute arbitrary SQL commands via the listid parameter.

CVE-2008-0512 joomla vulnerability CVSS: 7.5 31 Jan 2008, 20:00 UTC

SQL injection vulnerability in index.php in the fq (com_fq) component for Mambo and Joomla! allows remote attackers to execute arbitrary SQL commands via the listid parameter.

CVE-2008-0514 joomla vulnerability CVSS: 7.5 31 Jan 2008, 20:00 UTC

SQL injection vulnerability in index.php in the Glossary (com_glossary) 2.0 component for Mambo and Joomla! allows remote attackers to execute arbitrary SQL commands via the catid parameter in a display action.

CVE-2008-0515 joomla vulnerability CVSS: 7.5 31 Jan 2008, 20:00 UTC

SQL injection vulnerability in index.php in the musepoes (com_musepoes) component for Mambo and Joomla! allows remote attackers to execute arbitrary SQL commands via the aid parameter in an answer action.

CVE-2008-0517 joomla vulnerability CVSS: 7.5 31 Jan 2008, 20:00 UTC

SQL injection vulnerability in index.php in the Darko Selesi EstateAgent (com_estateagent) 0.1 component for Mambo 4.5.x and Joomla! allows remote attackers to execute arbitrary SQL commands via the objid parameter in a contact showObject action.

CVE-2008-0518 joomla vulnerability CVSS: 7.5 31 Jan 2008, 20:00 UTC

SQL injection vulnerability in index.php in the Recipes (com_recipes) 1.00 component for Mambo and Joomla! allows remote attackers to execute arbitrary SQL commands via the id parameter in a detail action.

CVE-2008-0519 joomla vulnerability CVSS: 7.5 31 Jan 2008, 20:00 UTC

SQL injection vulnerability in index.php in the Atapin Jokes (com_jokes) 1.0 component for Mambo and Joomla! allows remote attackers to execute arbitrary SQL commands via the cat parameter in a CatView action.

CVE-2007-6645 joomla vulnerability CVSS: 7.5 04 Jan 2008, 01:46 UTC

Unspecified vulnerability in Joomla! before 1.5 RC4 allows remote authenticated users to gain privileges via unspecified vectors, aka "registered user privilege escalation vulnerability."

CVE-2007-6642 joomla vulnerability CVSS: 6.8 04 Jan 2008, 01:46 UTC

Multiple cross-site request forgery (CSRF) vulnerabilities in Joomla! before 1.5 RC4 allow remote attackers to (1) add a Super Admin, (2) upload an extension containing arbitrary PHP code, and (3) modify the configuration as administrators via unspecified vectors.

CVE-2007-6644 joomla vulnerability CVSS: 6.5 04 Jan 2008, 01:46 UTC

Joomla! before 1.5 RC4 allows remote authenticated administrators to promote arbitrary users to the administrator group, in violation of the intended security model.

CVE-2007-6643 joomla vulnerability CVSS: 4.3 04 Jan 2008, 01:46 UTC

Cross-site scripting (XSS) vulnerability in the com_poll component in Joomla! before 1.5 RC4 allows remote attackers to inject arbitrary web script or HTML via unspecified vectors.

CVE-2007-6362 joomla vulnerability CVSS: 7.5 15 Dec 2007, 01:46 UTC

SQL injection vulnerability in index.php in the RSGallery (com_rsgallery) 2.0 beta 5 and earlier component for Mambo and Joomla! allows remote attackers to execute arbitrary SQL commands via the catid parameter in an inline page action.

CVE-2007-6272 joomla vulnerability CVSS: 7.5 07 Dec 2007, 11:46 UTC

Multiple SQL injection vulnerabilities in index.php in Joomla! 1.5 RC3 allow remote attackers to execute arbitrary SQL commands via (1) the view parameter to the com_content component, (2) the task parameter to the com_search component, or (3) the option parameter in a search action to the com_search component.

CVE-2007-5577 joomla vulnerability CVSS: 4.3 18 Oct 2007, 21:17 UTC

Multiple cross-site scripting (XSS) vulnerabilities in Joomla! before 1.0.13 (aka Sunglow) allow remote attackers to inject arbitrary web script or HTML via the (1) Title or (2) Section Name form fields in the Section Manager component, or (3) multiple unspecified fields in New Menu Item.

CVE-2007-5457 joomla vulnerability CVSS: 6.8 14 Oct 2007, 19:17 UTC

Multiple PHP remote file inclusion vulnerabilities in Michael Dempfle Joomla Flash Uploader (com_jfu or com_joomla_flash_uploader) 2.5.1 component for Joomla! allow remote attackers to execute arbitrary PHP code via a URL in the mosConfig_absolute_path parameter to (1) install.joomla_flash_uploader.php and (2) uninstall.joomla_flash_uploader.php.

CVE-2007-5451 joomla vulnerability CVSS: 6.8 14 Oct 2007, 18:17 UTC

PHP remote file inclusion vulnerability in admin.color.php in the com_colorlab (aka com_color) 1.0 component for Joomla! allows remote attackers to execute arbitrary PHP code via a URL in the mosConfig_live_site parameter.

CVE-2007-5427 joomla vulnerability CVSS: 4.3 12 Oct 2007, 23:17 UTC

Cross-site scripting (XSS) vulnerability in the com_search component in Joomla! 1.0.13 and earlier allows remote attackers to inject arbitrary web script or HTML via the searchword parameter. NOTE: this might be related to CVE-2007-4189.1.

CVE-2007-5410 joomla vulnerability CVSS: 6.8 12 Oct 2007, 18:17 UTC

PHP remote file inclusion vulnerability in admin.wmtrssreader.php in the webmaster-tips.net Flash RSS Reader (com_wmtrssreader) 1.0 component for Joomla! allows remote attackers to execute arbitrary PHP code via a URL in the mosConfig_live_site parameter.

CVE-2007-5389 joomla vulnerability CVSS: 6.8 12 Oct 2007, 10:17 UTC

PHP remote file inclusion vulnerability in preview.php in the swMenuFree (com_swmenufree) 4.6 component for Joomla! allows remote attackers to execute arbitrary PHP code via a URL in the mosConfig_absolute_path parameter. NOTE: a reliable third party disputes this issue because preview.php tests a certain constant to prevent direct requests

CVE-2007-5362 joomla vulnerability CVSS: 6.8 11 Oct 2007, 01:17 UTC

Multiple PHP remote file inclusion vulnerabilities in the Avant-Garde Solutions MOSMedia Lite (com_mosmedia) 4.5.1 component for Mambo and Joomla! allow remote attackers to execute arbitrary PHP code via a URL in the mosConfig_absolute_path parameter to (1) credits.html.php, (2) info.html.php, (3) media.divs.php, (4) media.divs.js.php, (5) purchase.html.php, or (6) support.html.php in includes/. NOTE: the provenance of this information is unknown; the details are obtained solely from third party information. NOTE: vector 3 may be the same as CVE-2007-2043.2.

CVE-2007-5363 joomla vulnerability CVSS: 6.8 11 Oct 2007, 01:17 UTC

PHP remote file inclusion vulnerability in admin.panoramic.php in the Panoramic Picture Viewer (com_panoramic) mambot (plugin) 1.0 for Joomla! allows remote attackers to execute arbitrary PHP code via a URL in the mosConfig_live_site parameter. NOTE: the provenance of this information is unknown; the details are obtained solely from third party information.

CVE-2007-5309 joomla vulnerability CVSS: 6.8 09 Oct 2007, 21:17 UTC

PHP remote file inclusion vulnerability in admin.wmtgallery.php in the webmaster-tips.net Flash Image Gallery (com_wmtgallery) 1.0 component for Joomla! allows remote attackers to execute arbitrary PHP code via a URL in the mosConfig_live_site parameter.

CVE-2007-5310 joomla vulnerability CVSS: 6.8 09 Oct 2007, 21:17 UTC

PHP remote file inclusion vulnerability in admin.wmtportfolio.php in the webmaster-tips.net wmtportfolio 1.0 (com_wmtportfolio) component for Joomla! allows remote attackers to execute arbitrary PHP code via a URL in the mosConfig_absolute_path parameter.

CVE-2007-5065 joomla vulnerability CVSS: 7.5 24 Sep 2007, 22:17 UTC

PHP remote file inclusion vulnerability in admin.slideshow1.php in the Flash Slide Show (com_slideshow) component for Joomla! allows remote attackers to execute arbitrary PHP code via a URL in the mosConfig_live_site parameter.

CVE-2007-4954 joomla vulnerability CVSS: 6.8 18 Sep 2007, 20:17 UTC

PHP remote file inclusion vulnerability in admin.joom12pic.php in the joom12Pic (com_joom12pic) 1.0 component for Joomla! allows remote attackers to execute arbitrary PHP code via a URL in the mosConfig_live_site parameter.

CVE-2007-4955 joomla vulnerability CVSS: 6.8 18 Sep 2007, 20:17 UTC

PHP remote file inclusion vulnerability in admin.joomlaflashfun.php in the Flash Fun! (com_joomlaflashfun) 1.0 component for Joomla! allows remote attackers to execute arbitrary PHP code via a URL in the mosConfig_live_site parameter.

CVE-2007-4923 joomla vulnerability CVSS: 6.8 17 Sep 2007, 17:17 UTC

PHP remote file inclusion vulnerability in admin.joomlaradiov5.php in the Joomla Radio 5 (com_joomlaradiov5) component for Joomla! allows remote attackers to execute arbitrary PHP code via a URL in the mosConfig_live_site parameter.

CVE-2007-4777 joomla vulnerability CVSS: 7.5 10 Sep 2007, 21:17 UTC

SQL injection vulnerability in Joomla! 1.5 before RC2 (aka Endeleo) allows remote attackers to execute arbitrary SQL commands via unspecified vectors, probably related to the archive section. NOTE: this may be the same as CVE-2007-4778.

CVE-2007-4778 joomla vulnerability CVSS: 7.5 10 Sep 2007, 21:17 UTC

Multiple SQL injection vulnerabilities in the content component (com_content) in Joomla! 1.5 Beta1, Beta2, and RC1 allow remote attackers to execute arbitrary SQL commands via the filter parameter in an archive action to (1) archive.php, (2) category.php, or (3) section.php in models/. NOTE: this may be the same as CVE-2007-4777.

CVE-2007-4780 joomla vulnerability CVSS: 6.8 10 Sep 2007, 21:17 UTC

Joomla! 1.5 before RC2 (aka Endeleo) allows remote attackers to obtain sensitive information (the full path) via unspecified vectors, probably involving direct requests to certain PHP scripts in tmpl/ directories.

CVE-2007-4781 joomla vulnerability CVSS: 6.6 10 Sep 2007, 21:17 UTC

administrator/index.php in the installer component (com_installer) in Joomla! 1.5 Beta1, Beta2, and RC1 allows remote authenticated administrators to upload arbitrary files to tmp/ via the "Upload Package File" functionality, which is accessible when com_installer is the value of the option parameter.

CVE-2007-4779 joomla vulnerability CVSS: 4.3 10 Sep 2007, 21:17 UTC

Cross-site scripting (XSS) vulnerability in Joomla! 1.5 before RC2 (aka Endeleo) allows remote attackers to inject arbitrary web script or HTML via unspecified vectors, probably related to the archive section.

CVE-2007-4745 joomla vulnerability CVSS: 4.3 06 Sep 2007, 22:17 UTC

Multiple cross-site scripting (XSS) vulnerabilities in the AkoBook 3.42 and earlier component (com_akobook) for Mambo allow remote attackers to inject arbitrary web script or HTML via Javascript events in the (1) gbmail and (2) gbpage parameters in the sign function.

CVE-2007-4188 joomla vulnerability CVSS: 9.3 08 Aug 2007, 01:17 UTC

Session fixation vulnerability in Joomla! before 1.0.13 (aka Sunglow) allows remote attackers to hijack administrative web sessions via unspecified vectors.

CVE-2007-4184 joomla vulnerability CVSS: 7.5 08 Aug 2007, 01:17 UTC

SQL injection vulnerability in administrator/popups/pollwindow.php in Joomla! 1.0.12 allows remote attackers to execute arbitrary SQL commands via the pollid parameter.

CVE-2007-4187 joomla vulnerability CVSS: 7.5 08 Aug 2007, 01:17 UTC

Multiple eval injection vulnerabilities in the com_search component in Joomla! 1.5 beta before RC1 (aka Mapya) allow remote attackers to execute arbitrary PHP code via PHP sequences in the searchword parameter, related to default_results.php in (1) components/com_search/views/search/tmpl/ and (2) templates/beez/html/com_search/search/.

CVE-2007-4186 joomla vulnerability CVSS: 6.8 08 Aug 2007, 01:17 UTC

PHP remote file inclusion vulnerability in admin.tour_toto.php in the Tour de France Pool (com_tour_toto) 1.0.1 module for Joomla! allows remote attackers to execute arbitrary PHP code via a URL in the mosConfig_absolute_path parameter.

CVE-2007-4185 joomla vulnerability CVSS: 5.0 08 Aug 2007, 01:17 UTC

Joomla! 1.0.12 allows remote attackers to obtain sensitive information via a direct request for (1) Stat.php (2) OutputFilter.php, (3) OutputCache.php, (4) Modifier.php, (5) Reader.php, and (6) TemplateCache.php in includes/patTemplate/patTemplate/; (7) includes/Cache/Lite/Output.php; and other unspecified components, which reveal the path in various error messages.

CVE-2007-4189 joomla vulnerability CVSS: 4.3 08 Aug 2007, 01:17 UTC

Multiple cross-site scripting (XSS) vulnerabilities in Joomla! before 1.0.13 (aka Sunglow) allow remote attackers to inject arbitrary web script or HTML via unspecified vectors in the (1) com_search, (2) com_content, and (3) mod_login components. NOTE: some of these details are obtained from third party information.

CVE-2007-4190 joomla vulnerability CVSS: 4.3 08 Aug 2007, 01:17 UTC

CRLF injection vulnerability in Joomla! before 1.0.13 (aka Sunglow) allows remote attackers to inject arbitrary HTTP headers and probably conduct HTTP response splitting attacks via CRLF sequences in the url parameter. NOTE: this can be leveraged for cross-site scripting (XSS) attacks. NOTE: some of these details are obtained from third party information.

CVE-2007-3130 joomla vulnerability CVSS: 6.8 08 Jun 2007, 16:30 UTC

Multiple PHP remote file inclusion vulnerabilities in the OpenWiki (formerly JD-Wiki) component (com_jd-wiki) 1.0.2, and possibly earlier, for Joomla! allow remote attackers to execute arbitrary PHP code via a URL in the mosConfig_absolute_path parameter to (1) dwpage.php or (2) wantedpages.php, different vectors than CVE-2006-4074. NOTE: the provenance of this information is unknown; the details are obtained solely from third party information.

CVE-2007-2199 joomla vulnerability CVSS: 6.8 24 Apr 2007, 20:19 UTC

PHP remote file inclusion vulnerability in lib/pcltar.lib.php (aka pcltar.php) in the PclTar module 1.3 and 1.3.1 for Vincent Blavet PhpConcept Library, as used in multiple products including (1) Joomla! 1.5.0 Beta, (2) N/X Web Content Management System (WCMS) 4.5, (3) CJG EXPLORER PRO 3.3, and (4) phpSiteBackup 0.1, allows remote attackers to execute arbitrary PHP code via a URL in the g_pcltar_lib_dir parameter.

CVE-2007-2196 joomla vulnerability CVSS: 6.8 24 Apr 2007, 17:19 UTC

PHP remote file inclusion vulnerability in jambook.php in the Jambook (com_Jambook) 1.0 beta7 module for Mambo and Joomla! allows remote attackers to execute arbitrary PHP code via a URL in the mosConfig_absolute_path parameter. NOTE: this issue has been disputed by a reliable third party because the jambook.php protects against direct request

CVE-2007-2005 joomla vulnerability CVSS: 6.8 12 Apr 2007, 19:19 UTC

Multiple PHP remote file inclusion vulnerabilities in the Taskhopper 1.1 component for Mambo and Joomla! allow remote attackers to execute arbitrary PHP code via a URL in the mosConfig_absolute_path parameter to (1) contact_type.php, (2) itemstatus_type.php, (3) projectstatus_type.php, (4) request_type.php, (5) responses_type.php, (6) timelog_type.php, or (7) urgency_type.php in inc/.

CVE-2007-1699 joomla vulnerability CVSS: 10.0 27 Mar 2007, 01:19 UTC

Multiple PHP remote file inclusion vulnerabilities in the SWmenu (com_swmenupro and com_swmenufree) 4.0 component for Mambo and Joomla! allow remote attackers to execute arbitrary PHP code via a URL in the mosConfig_absolute_path parameter to ImageManager/Classes/ImageManager.php under the (1) components/ or (2) administrator/components/ directory trees.

CVE-2007-1596 joomla vulnerability CVSS: 9.3 22 Mar 2007, 23:19 UTC

Multiple PHP remote file inclusion vulnerabilities in the NFN Address Book (com_nfn_addressbook) 0.4 component for Mambo and Joomla! allow remote attackers to execute arbitrary PHP code via a URL in the mosConfig_absolute_path parameter to (1) components/com_nfn_addressbook/nfnaddressbook.php or (2) administrator/components/com_nfn_addressbook/nfnaddressbook.php.

CVE-2006-7123 joomla vulnerability CVSS: 7.5 06 Mar 2007, 01:19 UTC

Multiple SQL injection vulnerabilities in BSQ Sitestats (component for Joomla) 1.8.0, and possibly other versions before 2.2.1, allow remote attackers to execute arbitrary SQL commands via (1) unspecified parameters when importing the (a) ip-to-country.csv file; and the (2) HTTP Referer, (3) HTTP User Agent, and (4) HTTP Accept Language headers to (b) bsqtemplateinc.php.

CVE-2006-7124 joomla vulnerability CVSS: 7.5 06 Mar 2007, 01:19 UTC

PHP remote file inclusion vulnerability in external/rssfeeds.php in BSQ Sitestats (component for Joomla) 1.8.0, and possibly other versions before 2.2.1, allows remote attackers to execute arbitrary PHP code via the baseDir parameter.

CVE-2006-7122 joomla vulnerability CVSS: 6.8 06 Mar 2007, 01:19 UTC

Cross-site scripting (XSS) vulnerability in the IP Address Lookup functionality in BSQ Sitestats (component for Joomla) 1.8.0, and possibly other versions before 2.2.1, allows remote attackers to inject arbitrary web script and HTML via the ip parameter.

CVE-2006-7125 joomla vulnerability CVSS: 6.8 06 Mar 2007, 01:19 UTC

Cross-site scripting (XSS) vulnerability in Joomla BSQ Sitestats 1.8.0 and 2.2.1 allows remote attackers to inject arbitrary web script or HTML via the HTTP Referer header, which is not properly handled when the administrator views site statistics.

CVE-2006-7126 joomla vulnerability CVSS: 6.8 06 Mar 2007, 01:19 UTC

SQL injection vulnerability in Joomla BSQ Sitestats 1.8.0 and 2.2.1 allows remote attackers to execute arbitrary SQL commands via the query string, possibly PHP_SELF.

CVE-2006-7008 joomla vulnerability CVSS: 7.5 12 Feb 2007, 23:28 UTC

Unspecified vulnerability in Joomla! before 1.0.10 has unknown impact and attack vectors, related to "securing mosmsg from misuse." NOTE: it is possible that this issue overlaps CVE-2006-1029.

CVE-2006-7009 joomla vulnerability CVSS: 7.5 12 Feb 2007, 23:28 UTC

Joomla! before 1.0.10 allows remote attackers to spoof the frontend submission forms, which has unknown impact and attack vectors.

CVE-2006-7010 joomla vulnerability CVSS: 7.5 12 Feb 2007, 23:28 UTC

The mosgetparam implementation in Joomla! before 1.0.10, does not set a variable's data type to integer when the variable's default value is numeric, which has unspecified impact and attack vectors, which may permit SQL injection attacks.

CVE-2006-6962 joomla vulnerability CVSS: 6.8 29 Jan 2007, 16:28 UTC

PHP remote file inclusion vulnerability in rsgallery2.html.php in the RS Gallery2 component (com_rsgallery2) 1.11.2 for Joomla! allows attackers to execute arbitrary PHP code via the mosConfig_absolute_path parameter. NOTE: this issue may overlap CVE-2006-5047.

CVE-2007-0374 joomla vulnerability CVSS: 7.5 19 Jan 2007, 23:28 UTC

SQL injection vulnerability in (1) Joomla! 1.0.11 and 1.5 Beta, and (2) Mambo 4.6.1, allows remote attackers to execute arbitrary SQL commands via the id parameter when cancelling content editing.

CVE-2007-0387 joomla vulnerability CVSS: 7.5 19 Jan 2007, 23:28 UTC

SQL injection vulnerability in models/category.php in the Weblinks component for Joomla! SVN 20070118 (com_weblinks) allows remote attackers to execute arbitrary SQL commands via the catid parameter.

CVE-2007-0373 joomla vulnerability CVSS: 6.8 19 Jan 2007, 23:28 UTC

Multiple SQL injection vulnerabilities in Joomla! 1.5.0 Beta allow remote attackers to execute arbitrary SQL commands via (1) the searchword parameter in certain files; the where parameter in (2) plugins/search/content.php or (3) plugins/search/weblinks.php; the text parameter in (4) plugins/search/contacts.php, (5) plugins/search/categories.php, or (6) plugins/search/sections.php; or (7) the email parameter in database/table/user.php, which is not properly handled by the check function.

CVE-2007-0375 joomla vulnerability CVSS: 5.0 19 Jan 2007, 23:28 UTC

Joomla! 1.5.0 Beta allows remote attackers to obtain sensitive information via a direct request for (1) plugins/user/example.php; (2) gmail.php, (3) example.php, or (4) ldap.php in plugins/authentication/; (5) modules/mod_mainmenu/menu.php; or other unspecified PHP scripts, which reveals the path in various error messages, related to a jimport function call at the beginning of each script.

CVE-2006-6833 joomla vulnerability CVSS: 7.5 31 Dec 2006, 05:00 UTC

com_categories in Joomla! before 1.0.12 does not validate input, which has unknown impact and remote attack vectors.

CVE-2006-6843 joomla vulnerability CVSS: 7.5 31 Dec 2006, 05:00 UTC

PHP remote file inclusion vulnerability in the BE IT EasyPartner 0.0.9 beta component for Joomla! allows remote attackers to execute arbitrary PHP code via unspecified vectors. NOTE: The provenance of this information is unknown; the details are obtained solely from third party information.

CVE-2006-6834 joomla vulnerability CVSS: 6.8 31 Dec 2006, 05:00 UTC

Multiple unspecified vulnerabilities in Joomla! before 1.0.12 have unknown impact and attack vectors related to (1) "unneeded legacy functions" and (2) "Several low level security fixes."

CVE-2006-6832 joomla vulnerability CVSS: 4.3 31 Dec 2006, 05:00 UTC

Cross-site scripting (XSS) vulnerability in Joomla! before 1.0.12 allows remote attackers to inject arbitrary web script or HTML via unspecified vectors, possibly related to poll.php or the module title.

CVE-2006-5039 joomla vulnerability CVSS: 7.5 27 Sep 2006, 23:07 UTC

Unspecified vulnerability in Events 1.3 beta module (com_events) for Joomla! has unspecified impact and attack vectors.

CVE-2006-5040 joomla vulnerability CVSS: 7.5 27 Sep 2006, 23:07 UTC

Unspecified vulnerability in SEF404x (com_sef) for Joomla! has unspecified impact and attack vectors.

CVE-2006-5046 joomla vulnerability CVSS: 7.5 27 Sep 2006, 23:07 UTC

Unspecified vulnerability in RS Gallery2 (com_rsgallery2) 1.11.3 and earlier for Joomla! has unspecified impact and attack vectors, related to lack of "hardened language files."

CVE-2006-5047 joomla vulnerability CVSS: 7.5 27 Sep 2006, 23:07 UTC

Unspecified vulnerability in rsgallery2.html.php in RS Gallery2 component (com_rsgallery2) before 1.11.3 for Joomla! allows attackers to execute arbitrary code.

CVE-2006-4996 joomla vulnerability CVSS: 10.0 26 Sep 2006, 02:07 UTC

Unspecified vulnerability in JoomlaLib (com_joomlalib) before 1.2.2 for Joomla! allows remote attackers to have an unknown impact, related to "Joomla globals hacked by script kiddies."

CVE-2006-4992 joomla vulnerability CVSS: 7.5 26 Sep 2006, 02:07 UTC

Multiple PHP remote file inclusion vulnerabilities in JD-WordPress for Joomla! (com_jd-wp) 2.0-1.0 RC2 allow remote attackers to execute arbitrary PHP code via a URL in the mosConfig_absolute_path parameter in (1) wp-comments-post.php, (2) wp-feed.php, or (3) wp-trackback.php.

CVE-2006-4995 joomla vulnerability CVSS: 7.5 26 Sep 2006, 02:07 UTC

PHP remote file inclusion vulnerability in BSQ Sitestats (bsq_sitestats) before 2.1.1 for Joomla! allows remote attackers to execute arbitrary PHP code via a URL in the mosConfig_absolute_path parameter.

CVE-2006-4556 joomla vulnerability CVSS: 7.5 06 Sep 2006, 00:04 UTC

PHP remote file inclusion vulnerability in index.php in the JIM component for Mambo and Joomla! allows remote attackers to execute arbitrary PHP code via a URL in the mosConfig_absolute_path parameter. NOTE: another researcher has stated that the product distribution does not include an index.php file. Also, this might be related to CVE-2006-4242

CVE-2006-4553 joomla vulnerability CVSS: 6.8 06 Sep 2006, 00:04 UTC

PHP remote file inclusion vulnerability in plugin.class.php in the com_comprofiler Components 1.0 RC2 for Mambo and Joomla! allows remote attackers to execute arbitrary PHP code via a URL in the mosConfig_absolute_path parameter.

CVE-2006-4469 joomla vulnerability CVSS: 7.5 31 Aug 2006, 20:04 UTC

Unspecified vulnerability in PEAR.php in Joomla! before 1.0.11 allows remote attackers to perform "remote execution," related to "Injection Flaws."

CVE-2006-4470 joomla vulnerability CVSS: 7.5 31 Aug 2006, 20:04 UTC

Joomla! before 1.0.11 omits some checks for whether _VALID_MOS is defined, which allows attackers to have an unknown impact, possibly resulting in PHP remote file inclusion.

CVE-2006-4472 joomla vulnerability CVSS: 7.5 31 Aug 2006, 20:04 UTC

Multiple unspecified vulnerabilities in Joomla! before 1.0.11 allow attackers to bypass user authentication via unknown vectors involving the (1) do_pdf command and the (2) emailform com_content task.

CVE-2006-4475 joomla vulnerability CVSS: 7.5 31 Aug 2006, 20:04 UTC

Joomla! before 1.0.11 does not limit access to the Admin Popups functionality, which has unknown impact and attack vectors.

CVE-2006-4476 joomla vulnerability CVSS: 7.5 31 Aug 2006, 20:04 UTC

Multiple unspecified vulnerabilities in Joomla! before 1.0.11, related to "Injection Flaws," allow attackers to have an unknown impact via (1) globals.php, which uses include_once() instead of require(); (2) the $options variable; (3) Admin Upload Image; (4) ->load(); (5) content submissions when frontpage is selected; (6) the mosPageNav constructor; (7) saveOrder functions; (8) the absence of "exploit blocking rules" in htaccess; and (9) the ACL.

CVE-2006-4468 joomla vulnerability CVSS: 6.8 31 Aug 2006, 20:04 UTC

Multiple unspecified vulnerabilities in Joomla! before 1.0.11, related to unvalidated input, allow attackers to have an unknown impact via unspecified vectors involving the (1) mosMail, (2) JosIsValidEmail, and (3) josSpoofValue functions; (4) the lack of inclusion of globals.php in administrator/index.php; (5) the Admin User Manager; and (6) the poll module.

CVE-2006-4474 joomla vulnerability CVSS: 6.8 31 Aug 2006, 20:04 UTC

Multiple cross-site scripting (XSS) vulnerabilities in Joomla! before 1.0.11 allow remote attackers to inject arbitrary web script or HTML via unspecified parameters in (1) Admin Module Manager, (2) Admin Help, and (3) Search.

CVE-2006-4471 joomla vulnerability CVSS: 6.5 31 Aug 2006, 20:04 UTC

The Admin Upload Image functionality in Joomla! before 1.0.11 allows remote authenticated users to upload files outside of the /images/stories/ directory via unspecified vectors.

CVE-2006-4473 joomla vulnerability CVSS: 5.1 31 Aug 2006, 20:04 UTC

Unspecified vulnerability in com_content in Joomla! before 1.0.11, when $mosConfig_hideEmail is set, allows attackers to perform the emailform and emailsend tasks.

CVE-2006-4466 joomla vulnerability CVSS: 5.0 31 Aug 2006, 20:04 UTC

Joomla! before 1.0.11 does not properly unset variables when the input data includes a numeric parameter with a value matching an alphanumeric parameter's hash value, which allows remote attackers to have an unspecified impact. NOTE: it could be argued that this vulnerability is due to a bug in the unset PHP command (CVE-2006-3017) and the proper fix should be in PHP; if so, then this should not be treated as a vulnerability in Joomla!.

CVE-2006-4378 joomla vulnerability CVSS: 7.5 26 Aug 2006, 21:04 UTC

Multiple PHP remote file inclusion vulnerabilities in the Rssxt component for Joomla! (com_rssxt), possibly 2.0 Beta 1 or 1.0 and earlier, allow remote attackers to execute arbitrary PHP code via a URL in the mosConfig_absolute_path parameter in (1) pinger.php, (2) RPC.php, or (3) rssxt.php. NOTE: another researcher has disputed this issue, saying that the attacker can not control this parameter. In addition, as of 20060825, the original researcher has appeared to be unreliable with some other past reports. CVE has not performed any followup analysis with respect to this issue

CVE-2006-4242 joomla vulnerability CVSS: 5.1 21 Aug 2006, 18:04 UTC

PHP remote file inclusion vulnerability in install.jim.php in the JIM 1.0.1 component for Joomla or Mambo allows remote attackers to execute arbitrary PHP code via a URL in the mosConfig_absolute_path parameter.

CVE-2006-4229 joomla vulnerability CVSS: 7.5 18 Aug 2006, 20:04 UTC

PHP remote file inclusion vulnerability in archive.php in the mosListMessenger Component (com_lm) before 20060719 for Mambo and Joomla! allows remote attackers to execute arbitrary PHP code via a URL in the mosConfig_absolute_path parameter.

CVE-2006-4129 joomla vulnerability CVSS: 7.5 14 Aug 2006, 23:04 UTC

PHP remote file inclusion vulnerability in admin.webring.docs.php in the Webring Component (com_webring) 1.0 and earlier for Joomla! allows remote attackers to execute arbitrary PHP code via a URL in the component_dir parameter.

CVE-2006-3530 joomla vulnerability CVSS: 6.8 12 Jul 2006, 21:05 UTC

PHP remote file inclusion vulnerability in com_pccookbook/pccookbook.php in the PccookBook Component for Mambo and Joomla 0.3 and possibly up to 1.3.1, when register_globals is enabled, allows remote attackers to execute arbitrary PHP code via the mosConfig_absolute_path parameter.

CVE-2006-3481 joomla vulnerability CVSS: 7.5 10 Jul 2006, 20:05 UTC

Multiple SQL injection vulnerabilities in Joomla! before 1.0.10 allow remote attackers to execute arbitrary SQL commands via unspecified parameters involving the (1) "Remember Me" function, (2) "Related Items" module, and the (3) "Weblinks submission".

CVE-2006-3480 joomla vulnerability CVSS: 5.8 10 Jul 2006, 20:05 UTC

Multiple cross-site scripting (XSS) vulnerabilities in Joomla! before 1.0.10 allow remote attackers to inject arbitrary web script or HTML via unspecified parameters involving the (1) getUserStateFromRequest function, and the (2) SEF and (3) com_messages modules.

CVE-2006-2960 joomla vulnerability CVSS: 7.5 12 Jun 2006, 20:06 UTC

PHP remote file inclusion vulnerability in includes/joomla.php in Joomla! 1.0 allows remote attackers to execute arbitrary PHP code via a URL in the includepath parameter.

CVE-2006-1956 joomla vulnerability CVSS: 5.0 21 Apr 2006, 10:02 UTC

The com_rss option (rss.php) in (1) Mambo and (2) Joomla! allows remote attackers to obtain sensitive information via an invalid feed parameter, which reveals the path in an error message.

CVE-2006-1957 joomla vulnerability CVSS: 5.0 21 Apr 2006, 10:02 UTC

The com_rss option (rss.php) in (1) Mambo and (2) Joomla! allows remote attackers to cause a denial of service (disk consumption and possibly web-server outage) via multiple requests with different values of the feed parameter.

CVE-2006-1047 joomla vulnerability CVSS: 10.0 07 Mar 2006, 11:02 UTC

Unspecified vulnerability in the "Remember Me login functionality" in Joomla! 1.0.7 and earlier has unknown impact and attack vectors.

CVE-2006-1049 joomla vulnerability CVSS: 7.5 07 Mar 2006, 11:02 UTC

Multiple SQL injection vulnerabilities in the Admin functionality in Joomla! 1.0.7 and earlier allow remote authenticated administrators to execute arbitrary SQL commands via unknown attack vectors.

CVE-2006-1048 joomla vulnerability CVSS: 5.0 07 Mar 2006, 11:02 UTC

Joomla! 1.0.7 and earlier allows attackers to bypass intended access restrictions and gain certain privileges via certain attack vectors related to the (1) Weblink, (2) Polls, (3) Newsfeeds, (4) Weblinks, (5) Content, (6) Content Section, (7) Content Category, (8) Contact items, or (9) Contact Search, (10) Content Search, (11) Newsfeed Search, or (12) Weblink Search.

CVE-2006-1028 joomla vulnerability CVSS: 7.8 07 Mar 2006, 00:02 UTC

feedcreator.class.php (aka the syndication component) in Joomla! 1.0.7 allows remote attackers to cause a denial of service (stressed file cache) by creating many files via filenames in the feed parameter to index.php.

CVE-2006-1027 joomla vulnerability CVSS: 5.0 07 Mar 2006, 00:02 UTC

feedcreator.class.php (aka the syndication component) in Joomla! 1.0.7 allows remote attackers to obtain sensitive information via a "/" (slash) in the feed parameter to index.php, which reveals the path in an error message.

CVE-2006-1030 joomla vulnerability CVSS: 5.0 07 Mar 2006, 00:02 UTC

Unspecified vulnerability in mod_templatechooser in Joomla! 1.0.7 allows remote attackers to obtain sensitive information via an unspecified attack vector that reveals the path.

CVE-2006-1029 joomla vulnerability CVSS: 4.3 07 Mar 2006, 00:02 UTC

The cross-site scripting (XSS) countermeasures in class.inputfilter.php in Joomla! 1.0.7 allow remote attackers to cause a denial of service via a crafted mosmsg parameter to index.php with a malformed sequence of multiple tags, as demonstrated using "<<>AAA<><>", possibly due to nested or empty tags.

CVE-2006-0303 joomla vulnerability CVSS: 10.0 19 Jan 2006, 00:03 UTC

Multiple unspecified vulnerabilities in the (1) publishing component, (2) Contact Component, (3) TinyMCE Compressor, and (4) other components in Joomla! 1.0.5 and earlier have unknown impact and attack vectors.

CVE-2006-0114 joomla vulnerability CVSS: 5.0 09 Jan 2006, 11:03 UTC

The vCard functions in Joomla! 1.0.5 use predictable sequential IDs for vcards and do not restrict access to them, which allows remote attackers to obtain valid e-mail addresses to conduct spam attacks by modifying the contact_id parameter to index2.php.

CVE-2005-4650 joomla vulnerability CVSS: 5.0 31 Dec 2005, 05:00 UTC

Joomla! 1.03 does not restrict the number of "Search" Mambots, which allows remote attackers to cause a denial of service (resource consumption) via a large number of Search Mambots.

CVE-2005-3773 joomla vulnerability CVSS: 10.0 23 Nov 2005, 00:03 UTC

Unspecified vulnerability in Joomla! before 1.0.4 has unknown impact and attack vectors, related to "Potential misuse of Media component file management functions."

CVE-2005-3772 joomla vulnerability CVSS: 7.5 23 Nov 2005, 00:03 UTC

Multiple SQL injection vulnerabilities in Joomla! before 1.0.4 allow remote attackers to execute arbitrary SQL commands via the (1) Itemid variable in the Polls modules and (2) multiple unspecified methods in the mosDBTable class.

CVE-2005-3771 joomla vulnerability CVSS: 4.3 23 Nov 2005, 00:03 UTC

Multiple cross-site scripting (XSS) vulnerabilities in Joomla! before 1.0.4 allow remote attackers to inject arbitrary web script or HTML via (1) "GET and other variables" and (2) "SEF".