Vulnerabilities > Joomla > High

DATE CVE VULNERABILITY TITLE RISK
2008-02-20 CVE-2008-0841 SQL Injection vulnerability in multiple products
SQL injection vulnerability in index.php in the Giorgio Nordo Ricette (com_ricette) 1.0 component for Joomla! and Mambo allows remote attackers to execute arbitrary SQL commands via the id parameter.
network
low complexity
joomla mambo CWE-89
7.5
2008-02-20 CVE-2008-0839 SQL Injection vulnerability in multiple products
SQL injection vulnerability in refer.php in the astatsPRO (com_astatspro) 1.0 component for Joomla! allows remote attackers to execute arbitrary SQL commands via the id parameter.
network
low complexity
astats joomla CWE-89
7.5
2008-02-20 CVE-2008-0833 SQL Injection vulnerability in Joomla COM Galeria
SQL injection vulnerability in index.php in the com_galeria component for Joomla! allows remote attackers to execute arbitrary SQL commands via the id parameter in a detail action.
network
low complexity
joomla CWE-89
7.5
2008-02-20 CVE-2008-0832 SQL Injection vulnerability in multiple products
SQL injection vulnerability in index.php in the Kemas Antonius com_quran 1.1 and earlier component for Mambo and Joomla! allows remote attackers to execute arbitrary SQL commands via the surano parameter in a viewayat action.
network
low complexity
joomla mambo CWE-89
7.5
2008-02-20 CVE-2008-0831 SQL Injection vulnerability in Joomla Rapid Recipe
Multiple SQL injection vulnerabilities in the Rapid Recipe (com_rapidrecipe) 1.6.5 and earlier component for Joomla! allow remote attackers to execute arbitrary SQL commands via the (1) user_id or (2) category_id parameter.
network
low complexity
joomla CWE-89
7.5
2008-02-19 CVE-2008-0829 SQL Injection vulnerability in multiple products
SQL injection vulnerability in jooget.php in the Joomlapixel Jooget! (com_jooget) 2.6.8 component for Joomla! and Mambo allows remote attackers to execute arbitrary SQL commands via the id parameter in a detail task.
network
low complexity
joomla joomlapixel mambo CWE-89
7.5
2008-02-19 CVE-2008-0817 SQL Injection vulnerability in multiple products
SQL injection vulnerability in the com_filebase component for Joomla! and Mambo allows remote attackers to execute arbitrary SQL commands via the filecatid parameter in a selectfolder action.
network
low complexity
joomla mambo CWE-89
7.5
2008-02-19 CVE-2008-0815 SQL Injection vulnerability in multiple products
SQL injection vulnerability in the com_mezun component for Joomla! allows remote attackers to execute arbitrary SQL commands via the id parameter in an edit task.
network
low complexity
egitimhost joomla CWE-89
7.5
2008-02-19 CVE-2008-0810 SQL Injection vulnerability in multiple products
SQL injection vulnerability in the com_scheduling module for Joomla! and Mambo allows remote attackers to execute arbitrary SQL commands via the id parameter.
network
low complexity
joomla mambo CWE-89
7.5
2008-02-15 CVE-2008-0802 SQL Injection vulnerability in multiple products
SQL injection vulnerability in index.php in the MediaSlide (com_mediaslide) 0.5 component for Joomla! allows remote attackers to execute arbitrary SQL commands via the albumnum parameter in a contact action.
network
low complexity
joomla mediaslide CWE-89
7.5