Show filters
391 Total Results
Displaying 311-320 of 391
Sort by:
Attacker Value
Unknown
CVE-2008-0829
Disclosure Date: February 19, 2008 (last updated October 04, 2023)
SQL injection vulnerability in jooget.php in the Joomlapixel Jooget! (com_jooget) 2.6.8 component for Joomla! and Mambo allows remote attackers to execute arbitrary SQL commands via the id parameter in a detail task.
0
Attacker Value
Unknown
CVE-2008-0795
Disclosure Date: February 15, 2008 (last updated October 04, 2023)
SQL injection vulnerability in index.php in the MGFi XfaQ (com_xfaq) 1.2 component for Mambo and Joomla! allows remote attackers to execute arbitrary SQL commands via the aid parameter in an answer action.
0
Attacker Value
Unknown
CVE-2008-0561
Disclosure Date: February 04, 2008 (last updated October 04, 2023)
SQL injection vulnerability in index.php in the Arthur Konze AkoGallery (com_akogallery) 2.5 beta component for Mambo and Joomla! allows remote attackers to execute arbitrary SQL commands via the id parameter in a detail action.
0
Attacker Value
Unknown
CVE-2008-0562
Disclosure Date: February 04, 2008 (last updated October 04, 2023)
SQL injection vulnerability in index.php in the Restaurant (com_restaurant) 1.0 component for Mambo and Joomla! allows remote attackers to execute arbitrary SQL commands via the id parameter in a detail action.
0
Attacker Value
Unknown
CVE-2008-0517
Disclosure Date: January 31, 2008 (last updated October 04, 2023)
SQL injection vulnerability in index.php in the Darko Selesi EstateAgent (com_estateagent) 0.1 component for Mambo 4.5.x and Joomla! allows remote attackers to execute arbitrary SQL commands via the objid parameter in a contact showObject action.
0
Attacker Value
Unknown
CVE-2007-6645
Disclosure Date: January 04, 2008 (last updated October 04, 2023)
Unspecified vulnerability in Joomla! before 1.5 RC4 allows remote authenticated users to gain privileges via unspecified vectors, aka "registered user privilege escalation vulnerability."
0
Attacker Value
Unknown
CVE-2007-6644
Disclosure Date: January 04, 2008 (last updated October 04, 2023)
Joomla! before 1.5 RC4 allows remote authenticated administrators to promote arbitrary users to the administrator group, in violation of the intended security model.
0
Attacker Value
Unknown
CVE-2007-6643
Disclosure Date: January 04, 2008 (last updated October 04, 2023)
Cross-site scripting (XSS) vulnerability in the com_poll component in Joomla! before 1.5 RC4 allows remote attackers to inject arbitrary web script or HTML via unspecified vectors.
0
Attacker Value
Unknown
CVE-2007-6642
Disclosure Date: January 04, 2008 (last updated October 04, 2023)
Multiple cross-site request forgery (CSRF) vulnerabilities in Joomla! before 1.5 RC4 allow remote attackers to (1) add a Super Admin, (2) upload an extension containing arbitrary PHP code, and (3) modify the configuration as administrators via unspecified vectors.
0
Attacker Value
Unknown
CVE-2007-6272
Disclosure Date: December 07, 2007 (last updated October 04, 2023)
Multiple SQL injection vulnerabilities in index.php in Joomla! 1.5 RC3 allow remote attackers to execute arbitrary SQL commands via (1) the view parameter to the com_content component, (2) the task parameter to the com_search component, or (3) the option parameter in a search action to the com_search component.
0