Show filters
390 Total Results
Displaying 201-210 of 390
Sort by:
Attacker Value
Unknown

CVE-2015-8563

Disclosure Date: December 16, 2015 (last updated October 05, 2023)
Cross-site request forgery (CSRF) vulnerability in the com_templates component in Joomla! 3.2.0 through 3.3.x and 3.4.x before 3.4.6 allows remote attackers to hijack the authentication of unspecified victims via unknown vectors.
0
Attacker Value
Unknown

CVE-2015-8565

Disclosure Date: December 16, 2015 (last updated October 05, 2023)
Directory traversal vulnerability in Joomla! 3.2.0 through 3.3.x and 3.4.x before 3.4.6 allows remote attackers to have unspecified impact via unknown vectors.
0
Attacker Value
Unknown

CVE-2015-8564

Disclosure Date: December 16, 2015 (last updated October 05, 2023)
Directory traversal vulnerability in Joomla! 3.4.x before 3.4.6 allows remote attackers to have unspecified impact via directory traversal sequences in the XML install file in an extension package archive.
0
Attacker Value
Unknown

CVE-2015-8562

Disclosure Date: December 16, 2015 (last updated October 05, 2023)
Joomla! 1.5.x, 2.x, and 3.x before 3.4.6 allow remote attackers to conduct PHP object injection attacks and execute arbitrary PHP code via the HTTP User-Agent header, as exploited in the wild in December 2015.
0
Attacker Value
Unknown

CVE-2015-7857

Disclosure Date: October 29, 2015 (last updated October 05, 2023)
SQL injection vulnerability in the getListQuery function in administrator/components/com_contenthistory/models/history.php in Joomla! 3.2 before 3.4.5 allows remote attackers to execute arbitrary SQL commands via the list[select] parameter to index.php.
0
Attacker Value
Unknown

CVE-2015-7859

Disclosure Date: October 29, 2015 (last updated October 05, 2023)
The com_contenthistory component in Joomla! 3.2 before 3.4.5 does not properly check ACLs, which allows remote attackers to obtain sensitive information via unspecified vectors.
0
Attacker Value
Unknown

CVE-2015-7858

Disclosure Date: October 29, 2015 (last updated October 05, 2023)
SQL injection vulnerability in Joomla! 3.2 before 3.4.4 allows remote attackers to execute arbitrary SQL commands via unspecified vectors, a different vulnerability than CVE-2015-7297.
0
Attacker Value
Unknown

CVE-2015-7297

Disclosure Date: October 29, 2015 (last updated October 05, 2023)
SQL injection vulnerability in Joomla! 3.2 before 3.4.4 allows remote attackers to execute arbitrary SQL commands via unspecified vectors, a different vulnerability than CVE-2015-7858.
0
Attacker Value
Unknown

CVE-2015-7899

Disclosure Date: October 29, 2015 (last updated October 05, 2023)
The com_content component in Joomla! 3.x before 3.4.5 does not properly check ACLs, which allows remote attackers to obtain sensitive information via unspecified vectors.
0
Attacker Value
Unknown

CVE-2015-6939

Disclosure Date: September 18, 2015 (last updated October 05, 2023)
Cross-site scripting (XSS) vulnerability in the login module in Joomla! 3.4.x before 3.4.4 allows remote attackers to inject arbitrary web script or HTML via unspecified vectors.
0