Show filters
22 Total Results
Displaying 11-20 of 22
Sort by:
Attacker Value
Unknown

CVE-2010-4862

Disclosure Date: October 05, 2011 (last updated October 04, 2023)
SQL injection vulnerability in the JExtensions JE Directory (com_jedirectory) component 1.0 for Joomla! allows remote attackers to execute arbitrary SQL commands via the catid parameter in an item action to index.php.
0
Attacker Value
Unknown

CVE-2010-4865

Disclosure Date: October 05, 2011 (last updated October 04, 2023)
SQL injection vulnerability in the JE Guestbook (com_jeguestbook) component 1.0 for Joomla! allows remote attackers to execute arbitrary SQL commands via the d_itemid parameter in an item_detail action to index.php.
0
Attacker Value
Unknown

CVE-2010-4720

Disclosure Date: February 01, 2011 (last updated October 04, 2023)
SQL injection vulnerability in the JExtensions JE Auto (com_jeauto) component before 1.1 for Joomla! allows remote attackers to execute arbitrary SQL commands via unspecified vectors related to the view item page.
0
Attacker Value
Unknown

CVE-2010-4517

Disclosure Date: December 09, 2010 (last updated October 04, 2023)
SQL injection vulnerability in the JExtensions JE Auto (com_jeauto) component 1.0 for Joomla!, when magic_quotes_gpc is disabled, allows remote attackers to execute arbitrary SQL commands via the char parameter in an item action to index.php.
0
Attacker Value
Unknown

CVE-2010-4365

Disclosure Date: December 01, 2010 (last updated October 04, 2023)
SQL injection vulnerability in JE Ajax Event Calendar (com_jeajaxeventcalendar) component for Joomla! allows remote attackers to execute arbitrary SQL commands via the event_id parameter in an alleventlist_more action to index.php.
0
Attacker Value
Unknown

CVE-2010-2680

Disclosure Date: July 12, 2010 (last updated October 04, 2023)
Directory traversal vulnerability in the JExtensions JE Section/Property Finder (jesectionfinder) component for Joomla! allows remote attackers to include and execute arbitrary local files via directory traversal sequences in the view parameter to index.php.
0
Attacker Value
Unknown

CVE-2010-2613

Disclosure Date: July 02, 2010 (last updated October 04, 2023)
Cross-site scripting (XSS) vulnerability in the JExtensions JE Awd Song (com_awd_song) component for Joomla! allows remote attackers to inject arbitrary web script or HTML via the song review field, which is not properly handled in a view action to index.php.
0
Attacker Value
Unknown

CVE-2010-2513

Disclosure Date: June 28, 2010 (last updated October 04, 2023)
SQL injection vulnerability in the JE Ajax Event Calendar (com_jeajaxeventcalendar) component 1.0.5 for Joomla! allows remote attackers to execute arbitrary SQL commands via the view parameter to index.php.
0
Attacker Value
Unknown

CVE-2010-2129

Disclosure Date: June 01, 2010 (last updated October 04, 2023)
Directory traversal vulnerability in the JE Ajax Event Calendar (com_jeajaxeventcalendar) component 1.0.1 and 1.0.3 for Joomla! allows remote attackers to read arbitrary files via a .. (dot dot) in the view parameter to index.php. NOTE: some of these details are obtained from third party information.
0
Attacker Value
Unknown

CVE-2010-2128

Disclosure Date: June 01, 2010 (last updated October 04, 2023)
Directory traversal vulnerability in the JE Quotation Form (com_jequoteform) component 1.0b1 for Joomla! allows remote attackers to read arbitrary files and possibly have unspecified other impact via a .. (dot dot) in the view parameter to index.php.
0