Show filters
390 Total Results
Displaying 201-210 of 390
Sort by:
Attacker Value
Unknown
CVE-2015-8563
Disclosure Date: December 16, 2015 (last updated October 05, 2023)
Cross-site request forgery (CSRF) vulnerability in the com_templates component in Joomla! 3.2.0 through 3.3.x and 3.4.x before 3.4.6 allows remote attackers to hijack the authentication of unspecified victims via unknown vectors.
0
Attacker Value
Unknown
CVE-2015-8565
Disclosure Date: December 16, 2015 (last updated October 05, 2023)
Directory traversal vulnerability in Joomla! 3.2.0 through 3.3.x and 3.4.x before 3.4.6 allows remote attackers to have unspecified impact via unknown vectors.
0
Attacker Value
Unknown
CVE-2015-8564
Disclosure Date: December 16, 2015 (last updated October 05, 2023)
Directory traversal vulnerability in Joomla! 3.4.x before 3.4.6 allows remote attackers to have unspecified impact via directory traversal sequences in the XML install file in an extension package archive.
0
Attacker Value
Unknown
CVE-2015-8562
Disclosure Date: December 16, 2015 (last updated October 05, 2023)
Joomla! 1.5.x, 2.x, and 3.x before 3.4.6 allow remote attackers to conduct PHP object injection attacks and execute arbitrary PHP code via the HTTP User-Agent header, as exploited in the wild in December 2015.
0
Attacker Value
Unknown
CVE-2015-7857
Disclosure Date: October 29, 2015 (last updated October 05, 2023)
SQL injection vulnerability in the getListQuery function in administrator/components/com_contenthistory/models/history.php in Joomla! 3.2 before 3.4.5 allows remote attackers to execute arbitrary SQL commands via the list[select] parameter to index.php.
0
Attacker Value
Unknown
CVE-2015-7859
Disclosure Date: October 29, 2015 (last updated October 05, 2023)
The com_contenthistory component in Joomla! 3.2 before 3.4.5 does not properly check ACLs, which allows remote attackers to obtain sensitive information via unspecified vectors.
0
Attacker Value
Unknown
CVE-2015-7858
Disclosure Date: October 29, 2015 (last updated October 05, 2023)
SQL injection vulnerability in Joomla! 3.2 before 3.4.4 allows remote attackers to execute arbitrary SQL commands via unspecified vectors, a different vulnerability than CVE-2015-7297.
0
Attacker Value
Unknown
CVE-2015-7297
Disclosure Date: October 29, 2015 (last updated October 05, 2023)
SQL injection vulnerability in Joomla! 3.2 before 3.4.4 allows remote attackers to execute arbitrary SQL commands via unspecified vectors, a different vulnerability than CVE-2015-7858.
0
Attacker Value
Unknown
CVE-2015-7899
Disclosure Date: October 29, 2015 (last updated October 05, 2023)
The com_content component in Joomla! 3.x before 3.4.5 does not properly check ACLs, which allows remote attackers to obtain sensitive information via unspecified vectors.
0
Attacker Value
Unknown
CVE-2015-6939
Disclosure Date: September 18, 2015 (last updated October 05, 2023)
Cross-site scripting (XSS) vulnerability in the login module in Joomla! 3.4.x before 3.4.4 allows remote attackers to inject arbitrary web script or HTML via unspecified vectors.
0