Vulnerabilities > Ijoomla

DATE CVE VULNERABILITY TITLE RISK
2022-05-06 CVE-2022-23802 Incorrect Default Permissions vulnerability in Ijoomla Guru 5.2.5
Joomla Guru extension 5.2.5 is affected by: Insecure Permissions.
network
low complexity
ijoomla CWE-276
7.5
2018-01-14 CVE-2018-5696 SQL Injection vulnerability in Ijoomla AD Agency 6.0.9
The iJoomla com_adagency plugin 6.0.9 for Joomla! allows SQL injection via the `advertiser_status` and `status_select` parameters to index.php.
network
low complexity
ijoomla CWE-89
critical
9.8
2011-10-08 CVE-2010-4918 Code Injection vulnerability in Ijoomla COM Magazine 3.0.1
PHP remote file inclusion vulnerability in iJoomla Magazine (com_magazine) component 3.0.1 for Joomla! allows remote attackers to execute arbitrary PHP code via a URL in the config parameter to magazine.functions.php.
network
low complexity
ijoomla joomla CWE-94
7.5
2010-04-08 CVE-2010-1312 Path Traversal vulnerability in Ijoomla COM News Portal
Directory traversal vulnerability in the iJoomla News Portal (com_news_portal) component 1.5.x for Joomla! allows remote attackers to read arbitrary files via a ..
network
low complexity
ijoomla joomla CWE-22
5.0
2009-06-17 CVE-2009-2099 SQL Injection vulnerability in Ijoomla COM Rssfeeder
SQL injection vulnerability in the iJoomla RSS Feeder (com_ijoomla_rss) component for Joomla! allows remote attackers to execute arbitrary SQL commands via the cat parameter in an xml action to index.php.
network
low complexity
joomla ijoomla CWE-89
7.5