Vulnerabilities > Chillcreations

DATE CVE VULNERABILITY TITLE RISK
2018-02-17 CVE-2018-5989 SQL Injection vulnerability in Chillcreations Ccnewsletter
SQL Injection exists in the ccNewsletter 2.x component for Joomla! via the id parameter in a task=removeSubscriber action, a related issue to CVE-2011-5099.
network
low complexity
chillcreations CWE-89
7.5
2012-08-14 CVE-2011-5099 SQL Injection vulnerability in Chillcreations MOD Ccnewsletter 1.0.7/1.0.8/1.0.9
SQL injection vulnerability in helper/popup.php in the ccNewsletter (mod_ccnewsletter) component 1.0.7 through 1.0.9 for Joomla! allows remote attackers to execute arbitrary SQL commands via the id parameter.
network
low complexity
chillcreations joomla CWE-89
7.5
2011-10-05 CVE-2010-4853 SQL Injection vulnerability in Chillcreations COM Ccinvoices
SQL injection vulnerability in the ccInvoices (com_ccinvoices) component for Joomla! allows remote attackers to execute arbitrary SQL commands via the id parameter in a viewInv action to index.php.
network
low complexity
chillcreations joomla CWE-89
7.5
2010-02-02 CVE-2010-0467 Path Traversal vulnerability in Chillcreations COM Ccnewsletter 1.0.5
Directory traversal vulnerability in the ccNewsletter (com_ccnewsletter) component 1.0.5 for Joomla! allows remote attackers to read arbitrary files via a ..
network
low complexity
chillcreations CWE-22
5.8