Vulnerabilities > Elearningforce

DATE CVE VULNERABILITY TITLE RISK
2009-01-30 CVE-2009-0373 SQL Injection vulnerability in Elearningforce Flash Magazine Deluxe NIL
SQL injection vulnerability in the ElearningForce Flash Magazine Deluxe (com_flashmagazinedeluxe) component for Joomla! allows remote attackers to execute arbitrary SQL commands via the mag_id parameter in a magazine action to index.php.
network
low complexity
elearningforce joomla CWE-89
7.5
2008-04-04 CVE-2008-1682 Code Injection vulnerability in Elearningforce Online Flashquiz 1.0.2
PHP remote file inclusion vulnerability in quiz/common/db_config.inc.php in the Online FlashQuiz (com_onlineflashquiz) 1.0.2 component for Joomla! allows remote attackers to execute arbitrary PHP code via a URL in the base_dir parameter.
6.8