Show filters
389 Total Results
Displaying 111-120 of 389
Sort by:
Attacker Value
Unknown

CVE-2011-3629

Disclosure Date: February 04, 2020 (last updated February 21, 2025)
Joomla! core 1.7.1 allows information disclosure due to weak encryption
Attacker Value
Unknown

CVE-2011-4937

Disclosure Date: February 04, 2020 (last updated February 21, 2025)
Joomla! 1.7.1 has core information disclosure due to inadequate error checking.
Attacker Value
Unknown

CVE-2020-8420

Disclosure Date: January 28, 2020 (last updated February 21, 2025)
An issue was discovered in Joomla! before 3.9.15. A missing CSRF token check in the LESS compiler of com_templates causes a CSRF vulnerability.
Attacker Value
Unknown

CVE-2020-8421

Disclosure Date: January 28, 2020 (last updated February 21, 2025)
An issue was discovered in Joomla! before 3.9.15. Inadequate escaping of usernames allows XSS attacks in com_actionlogs.
Attacker Value
Unknown

CVE-2020-8419

Disclosure Date: January 28, 2020 (last updated February 21, 2025)
An issue was discovered in Joomla! before 3.9.15. Missing token checks in the batch actions of various components cause CSRF vulnerabilities.
Attacker Value
Unknown

CVE-2011-3595

Disclosure Date: January 22, 2020 (last updated February 21, 2025)
Multiple Cross-site Scripting (XSS) vulnerabilities exist in Joomla! through 1.7.0 in index.php in the search word, extension, asset, and author parameters.
Attacker Value
Unknown

CVE-2011-4907

Disclosure Date: January 15, 2020 (last updated February 21, 2025)
Joomla! 1.5x through 1.5.12: Missing JEXEC Check
Attacker Value
Unknown

CVE-2012-1562

Disclosure Date: January 15, 2020 (last updated February 21, 2025)
Joomla! core before 2.5.3 allows unauthorized password change.
Attacker Value
Unknown

CVE-2012-1563

Disclosure Date: January 15, 2020 (last updated February 21, 2025)
Joomla! before 2.5.3 allows Admin Account Creation.
Attacker Value
Unknown

CVE-2019-19845

Disclosure Date: December 18, 2019 (last updated November 27, 2024)
In Joomla! before 3.9.14, a missing access check in framework files could lead to a path disclosure.