Vulmon
Recent Vulnerabilities
Research Posts
Trends
Blog
About
Contact
Vulmon Alerts
By Relevance
By Risk Score
By Publish Date
joomla vulnerabilities and exploits
(subscribe to this query)
2.6
CVSSv2
CVE-2009-1279
Multiple cross-site scripting (XSS) vulnerabilities in Joomla! 1.5 up to and including 1.5.9 allow remote malicious users to inject arbitrary web script or HTML via unspecified vectors to the (1) com_admin component, (2) com_search component when "Gather Search Statistics&qu...
Joomla Joomla 1.5.0
Joomla Joomla 1.5.1
Joomla Joomla 1.5.8
Joomla Joomla 1.5.9
Joomla Joomla 1.5.6
Joomla Joomla 1.5.7
Joomla Joomla 1.5.2
Joomla Joomla 1.5.3
Joomla Joomla 1.5
Joomla Joomla 1.5.4
Joomla Joomla 1.5.5
6.8
CVSSv2
CVE-2009-1280
Multiple cross-site request forgery (CSRF) vulnerabilities in the com_media component for Joomla! 1.5.x up to and including 1.5.9 allow remote malicious users to hijack the authentication of unspecified victims via unknown vectors.
Joomla Joomla 1.5.0
Joomla Joomla 1.5.6
Joomla Joomla 1.5.7
Joomla Joomla 1.5.8
Joomla Joomla 1.5
Joomla Joomla 1.5.4
Joomla Joomla 1.5.5
Joomla Joomla 1.5.1
Joomla Joomla 1.5.9
Joomla Joomla 1.5.2
Joomla Joomla 1.5.3
4.3
CVSSv2
CVE-2012-0822
Cross-site scripting (XSS) vulnerability in Joomla! 1.6 and 1.7.x prior to 1.7.4 allows remote malicious users to inject arbitrary web script or HTML via unspecified vectors, a different vulnerability than CVE-2012-0820.
Joomla Joomla\\! 1.6
Joomla Joomla\\! 1.6.4
Joomla Joomla\\! 1.7.0
Joomla Joomla\\! 1.6.6
Joomla Joomla\\! 1.7.2
Joomla Joomla\\! 1.7.3
Joomla Joomla\\! 1.6.1
Joomla Joomla\\! 1.6.3
Joomla Joomla\\! 1.6.0
Joomla Joomla\\! 1.6.5
Joomla Joomla\\! 1.7.1
7.5
CVSSv2
CVE-2006-7010
The mosgetparam implementation in Joomla! prior to 1.0.10, does not set a variable's data type to integer when the variable's default value is numeric, which has unspecified impact and attack vectors, which may permit SQL injection attacks.
Joomla Joomla 1.0.2
Joomla Joomla 1.0.3
Joomla Joomla 1.0.4
Joomla Joomla 1.0.5
Joomla Joomla 1.0.0
Joomla Joomla 1.0.7
Joomla Joomla 1.0.9
Joomla Joomla 1.0.1
Joomla Joomla 1.0.6
Joomla Joomla 1.0.8
7.5
CVSSv2
CVE-2014-7981
SQL injection vulnerability in Joomla! CMS 3.1.x and 3.2.x prior to 3.2.3 allows remote malicious users to execute arbitrary SQL commands via unspecified vectors.
Joomla Joomla\\! 3.1.2
Joomla Joomla\\! 3.1.1
Joomla Joomla\\! 3.1.6
Joomla Joomla\\! 3.2.1
Joomla Joomla\\! 3.1.3
Joomla Joomla\\! 3.1.4
Joomla Joomla\\! 3.1.5
Joomla Joomla\\! 3.1.0
Joomla Joomla\\! 3.2.2
Joomla Joomla\\! 3.2.0
7.5
CVSSv2
CVE-2006-7009
Joomla! prior to 1.0.10 allows remote malicious users to spoof the frontend submission forms, which has unknown impact and attack vectors.
Joomla Joomla 1.0.4
Joomla Joomla 1.0.5
Joomla Joomla 1.0.6
Joomla Joomla 1.0.7
Joomla Joomla 1.0.0
Joomla Joomla 1.0.2
Joomla Joomla 1.0.9
Joomla Joomla 1.0.1
Joomla Joomla 1.0.3
Joomla Joomla 1.0.8
7.5
CVSSv2
CVE-2006-7008
Unspecified vulnerability in Joomla! prior to 1.0.10 has unknown impact and attack vectors, related to "securing mosmsg from misuse." NOTE: it is possible that this issue overlaps CVE-2006-1029.
Joomla Joomla 1.0.0
Joomla Joomla 1.0.1
Joomla Joomla 1.0.2
Joomla Joomla 1.0.7
Joomla Joomla 1.0.8
Joomla Joomla 1.0.9
Joomla Joomla 1.0.4
Joomla Joomla 1.0.6
Joomla Joomla 1.0.3
Joomla Joomla 1.0.5
4.3
CVSSv2
CVE-2014-6631
Cross-site scripting (XSS) vulnerability in com_media in Joomla! 3.2.x prior to 3.2.5 and 3.3.x prior to 3.3.4 allows remote malicious users to inject arbitrary web script or HTML via unspecified vectors.
Joomla Joomla\\! 3.2.4
Joomla Joomla\\! 3.3.3
Joomla Joomla\\! 3.3.2
Joomla Joomla\\! 3.3.1
Joomla Joomla\\! 3.3.0
Joomla Joomla\\! 3.2.2
Joomla Joomla\\! 3.2.0
Joomla Joomla\\! 3.2.3
Joomla Joomla\\! 3.2.1
5.8
CVSSv2
CVE-2006-3480
Multiple cross-site scripting (XSS) vulnerabilities in Joomla! prior to 1.0.10 allow remote malicious users to inject arbitrary web script or HTML via unspecified parameters involving the (1) getUserStateFromRequest function, and the (2) SEF and (3) com_messages modules.
Joomla Joomla 1.0.2
Joomla Joomla 1.0.3
Joomla Joomla 1.0.7
Joomla Joomla 1.0.8
Joomla Joomla 1.0.4
Joomla Joomla 1.0.5
Joomla Joomla 1.0
Joomla Joomla 1.0.1
Joomla Joomla 1.0.9
7.5
CVSSv2
CVE-2006-3481
Multiple SQL injection vulnerabilities in Joomla! prior to 1.0.10 allow remote malicious users to execute arbitrary SQL commands via unspecified parameters involving the (1) "Remember Me" function, (2) "Related Items" module, and the (3) "Weblinks submiss...
Joomla Joomla 1.0
Joomla Joomla 1.0.1
Joomla Joomla 1.0.4
Joomla Joomla 1.0.5
Joomla Joomla 1.0.2
Joomla Joomla 1.0.3
Joomla Joomla 1.0.7
Joomla Joomla 1.0.8
Joomla Joomla 1.0.9
CVSSv2
CVSSv2
CVSSv3
VMScore
Recommendations:
path traversal
CVE-2024-26978
CVE-2024-26982
wireless
CVE-2023-6949
CVE-2024-26980
CVE-2024-32766
CVE-2024-26939
cache poisoning
Vulnerability Notification Service
You don’t have to wait for vulnerability scanning results
Get Started
« PREV
3
4
5
6
7
8
9
10
NEXT »