Vulmon
Recent Vulnerabilities
Research Posts
Trends
Blog
About
Contact
Vulmon Alerts
By Relevance
By Risk Score
By Publish Date
joomla joomla 1.5.2 vulnerabilities and exploits
(subscribe to this query)
4.3
CVSSv2
CVE-2009-1939
Cross-site scripting (XSS) vulnerability in the JA_Purity template for Joomla! 1.5.x up to and including 1.5.10 allows remote malicious users to inject arbitrary web script or HTML via unspecified vectors.
Joomla Joomla 1.5.0 Beta
Joomla Joomla 1.5.8
Joomla Joomla 1.5.6
Joomla Joomla 1.5.10
Joomla Joomla 1.5.7
Joomla Joomla 1.5.5
Joomla Joomla 1.5.0 Beta1
Joomla Joomla 1.5.0 Beta2
Joomla Joomla 1.5.9
Joomla Joomla 1.5.2
Joomla Joomla 1.5.0 Rc1
Joomla Joomla 1.5.1
Joomla Joomla 1.5.3
Joomla Joomla 1.5.4
5.5
CVSSv2
CVE-2009-3945
Unspecified vulnerability in the Front-End Editor in the com_content component in Joomla! prior to 1.5.15 allows remote authenticated users, with Author privileges, to replace the articles of an arbitrary user via unknown vectors.
Joomla Joomla\\! 1.5.13
Joomla Joomla\\! 1.5.12
Joomla Joomla\\! 1.5.4
Joomla Joomla\\! 1.5.3
Joomla Joomla\\!
Joomla Joomla\\! 1.5.6
Joomla Joomla\\! 1.5.5
Joomla Joomla\\! 1.5.11
Joomla Joomla\\! 1.5.10
Joomla Joomla\\! 1.5.2
Joomla Joomla\\! 1.5.1
Joomla Joomla\\! 1.5.9
Joomla Joomla\\! 1.5.8
Joomla Joomla\\! 1.5.7
Joomla Joomla\\! 1.5.0
5
CVSSv2
CVE-2009-3946
Joomla! prior to 1.5.15 allows remote malicious users to read an extension's XML file, and thereby obtain the extension's version number, via a direct request.
Joomla Joomla\\! 1.5.13
Joomla Joomla\\! 1.5.12
Joomla Joomla\\! 1.5.5
Joomla Joomla\\! 1.5.4
Joomla Joomla\\!
Joomla Joomla\\! 1.5.7
Joomla Joomla\\! 1.5.6
Joomla Joomla\\! 1.5.11
Joomla Joomla\\! 1.5.10
Joomla Joomla\\! 1.5.3
Joomla Joomla\\! 1.5.2
Joomla Joomla\\! 1.5.9
Joomla Joomla\\! 1.5.8
Joomla Joomla\\! 1.5.1
Joomla Joomla\\! 1.5.0
4.3
CVSSv2
CVE-2010-1649
Multiple cross-site scripting (XSS) vulnerabilities in the back end in Joomla! 1.5 up to and including 1.5.17 allow remote malicious users to inject arbitrary web script or HTML via unknown vectors related to "various administrator screens," possibly the search paramete...
Joomla Joomla\\! 1.5.11
Joomla Joomla\\! 1.5.13
Joomla Joomla\\! 1.5.3
Joomla Joomla\\! 1.5.2
Joomla Joomla\\! 1.5.9
Joomla Joomla\\! 1.5.16
Joomla Joomla\\! 1.5.4
Joomla Joomla\\! 1.5.10
Joomla Joomla\\! 1.5.7
Joomla Joomla\\! 1.5.0
Joomla Joomla\\! 1.5.15
Joomla Joomla\\! 1.5.6
Joomla Joomla\\! 1.5.1
Joomla Joomla\\! 1.5.17
Joomla Joomla\\! 1.5.8
Joomla Joomla\\! 1.5.12
Joomla Joomla\\! 1.5.5
Joomla Joomla\\! 1.5.14
4.3
CVSSv2
CVE-2010-3712
Cross-site scripting (XSS) vulnerability in Joomla! 1.5.x prior to 1.5.21 and 1.6.x prior to 1.6.1 allows remote malicious users to inject arbitrary web script or HTML via vectors involving "multiple encoded entities," as demonstrated by the query string to index.php in...
Joomla Joomla\\! 1.5.11
Joomla Joomla\\! 1.5.13
Joomla Joomla\\! 1.5.3
Joomla Joomla\\! 1.5.2
Joomla Joomla\\! 1.5.9
Joomla Joomla\\! 1.5.18
Joomla Joomla\\! 1.5.16
Joomla Joomla\\! 1.5.4
Joomla Joomla\\! 1.5.10
Joomla Joomla\\! 1.5.7
Joomla Joomla\\! 1.5.0
Joomla Joomla\\! 1.5.15
Joomla Joomla\\! 1.5.6
Joomla Joomla\\! 1.5.1
Joomla Joomla\\! 1.5.17
Joomla Joomla\\! 1.5.8
Joomla Joomla\\! 1.5.19
Joomla Joomla\\! 1.5.12
Joomla Joomla\\! 1.5.5
Joomla Joomla\\! 1.5.20
Joomla Joomla\\! 1.5.14
3.5
CVSSv2
CVE-2010-2535
Multiple cross-site scripting (XSS) vulnerabilities in the Back End in Joomla! 1.5.x prior to 1.5.20 allow remote authenticated users to inject arbitrary web script or HTML via administrator screens.
Joomla Joomla\\! 1.5.0
Joomla Joomla\\! 1.5.2
Joomla Joomla\\! 1.5.9
Joomla Joomla\\! 1.5.11
Joomla Joomla\\! 1.5.15
Joomla Joomla\\! 1.5.17
Joomla Joomla\\! 1.5.3
Joomla Joomla\\! 1.5.4
Joomla Joomla\\! 1.5.5
Joomla Joomla\\! 1.5.6
Joomla Joomla\\! 1.5.7
Joomla Joomla\\! 1.5.19
Joomla Joomla\\! 1.5.12
Joomla Joomla\\! 1.5.13
Joomla Joomla\\! 1.5.14
Joomla Joomla\\! 1.5.1
Joomla Joomla\\! 1.5.8
Joomla Joomla\\! 1.5.10
Joomla Joomla\\! 1.5.16
Joomla Joomla\\! 1.5.18
7.5
CVSSv2
CVE-2010-4166
Multiple SQL injection vulnerabilities in Joomla! 1.5.x prior to 1.5.22 allow remote malicious users to execute arbitrary SQL commands via (1) the filter_order parameter in a com_weblinks category action to index.php, (2) the filter_order_Dir parameter in a com_weblinks category ...
Joomla Joomla\\! 1.5.11
Joomla Joomla\\! 1.5.13
Joomla Joomla\\! 1.5.3
Joomla Joomla\\! 1.5.2
Joomla Joomla\\! 1.5.9
Joomla Joomla\\! 1.5.18
Joomla Joomla\\! 1.5.16
Joomla Joomla\\! 1.5.4
Joomla Joomla\\! 1.5.10
Joomla Joomla\\! 1.5.7
Joomla Joomla\\! 1.5.0
Joomla Joomla\\! 1.5.15
Joomla Joomla\\! 1.5.6
Joomla Joomla\\! 1.5.1
Joomla Joomla\\! 1.5.17
Joomla Joomla\\! 1.5.8
Joomla Joomla\\! 1.5.19
Joomla Joomla\\! 1.5.21
Joomla Joomla\\! 1.5.12
Joomla Joomla\\! 1.5.5
Joomla Joomla\\! 1.5.20
Joomla Joomla\\! 1.5.14
7.5
CVSSv2
CVE-2010-4696
Multiple SQL injection vulnerabilities in Joomla! 1.5.x prior to 1.5.22 allow remote malicious users to execute arbitrary SQL commands via the (1) filter_order or (2) filter_order_Dir parameter in a com_contact action to index.php, a different vulnerability than CVE-2010-4166. NO...
Joomla Joomla\\! 1.5.21
Joomla Joomla\\! 1.5.8
Joomla Joomla\\! 1.5.15
Joomla Joomla\\! 1.5.17
Joomla Joomla\\! 1.5.18
Joomla Joomla\\! 1.5.1
Joomla Joomla\\! 1.5.9
Joomla Joomla\\! 1.5.10
Joomla Joomla\\! 1.5.11
Joomla Joomla\\! 1.5.12
Joomla Joomla\\! 1.5.0
Joomla Joomla\\! 1.5.19
Joomla Joomla\\! 1.5.5
Joomla Joomla\\! 1.5.20
Joomla Joomla\\! 1.5.6
Joomla Joomla\\! 1.5.13
Joomla Joomla\\! 1.5.7
Joomla Joomla\\! 1.5.14
Joomla Joomla\\! 1.5.16
Joomla Joomla\\! 1.5.3
Joomla Joomla\\! 1.5.4
Joomla Joomla\\! 1.5.2
5
CVSSv2
CVE-2011-2890
The MediaViewMedia class in administrator/components/com_media/views/media/view.html.php in Joomla! 1.5.23 and previous versions allows remote malicious users to obtain sensitive information via vectors involving the base variable, leading to disclosure of the installation path, ...
Joomla Joomla\\! 1.5.12
Joomla Joomla\\! 1.5.15
Joomla Joomla\\! 1.5.20
Joomla Joomla\\! 1.5.6
Joomla Joomla\\! 1.5.0
Joomla Joomla\\!
Joomla Joomla\\! 1.5.10
Joomla Joomla\\! 1.5.11
Joomla Joomla\\! 1.5.19
Joomla Joomla\\! 1.5.5
Joomla Joomla\\! 1.5.2
Joomla Joomla\\! 1.5.7
Joomla Joomla\\! 1.5.8
Joomla Joomla\\! 1.5.9
Joomla Joomla\\! 1.5.17
Joomla Joomla\\! 1.5.16
Joomla Joomla\\! 1.5.4
Joomla Joomla\\! 1.5.1
Joomla Joomla\\! 1.5.13
Joomla Joomla\\! 1.5.21
Joomla Joomla\\! 1.5.14
Joomla Joomla\\! 1.5.22
10
CVSSv2
CVE-2008-3225
Joomla! prior to 1.5.4 allows malicious users to access administration functionality, which has unknown impact and attack vectors related to a missing "LDAP security fix."
Joomla Joomla 1.0.11
Joomla Joomla 1.0.12
Joomla Joomla 1.0.7
Joomla Joomla 1.0.8
Joomla Joomla 1.5.1
Joomla Joomla 1.5.2
Joomla Joomla 1.0.1
Joomla Joomla 1.0.10
Joomla Joomla 1.0.5
Joomla Joomla 1.0.6
Joomla Joomla 1.5.0 Beta1
Joomla Joomla 1.5.0 Beta2
Joomla Joomla 1.5.0 Rc1
Joomla Joomla 1.0
Joomla Joomla 1.0.0
Joomla Joomla 1.0.3
Joomla Joomla 1.0.4
Joomla Joomla 1.5
Joomla Joomla 1.5.0 Beta
Joomla Joomla 1.0.13
Joomla Joomla 1.0.2
Joomla Joomla 1.0.9
CVSSv2
CVSSv2
CVSSv3
VMScore
Recommendations:
CVE-2023-3675
CVE-2024-3400
CVE-2024-23557
mass assignment
CVE-2023-1389
local file inclusion
CVE-2024-32596
file upload
CVE-2024-32593
Vulnerability Notification Service
You don’t have to wait for vulnerability scanning results
Get Started
« PREV
1
2
3
4
5
NEXT »