Vulnerabilities > Neojoomla
DATE | CVE | VULNERABILITY TITLE | RISK |
---|---|---|---|
2018-02-17 | CVE-2018-6370 | SQL Injection vulnerability in Neojoomla Neorecruit 4.1 SQL Injection exists in the NeoRecruit 4.1 component for Joomla! via the (1) PATH_INFO or (2) name of a .html file under the all-offers/ URI. | 7.5 |
2011-11-01 | CVE-2010-4995 | SQL Injection vulnerability in Neojoomla COM Neorecruit 1.6.4 SQL injection vulnerability in the NeoRecruit (com_neorecruit) component 1.6.4 for Joomla! allows remote attackers to execute arbitrary SQL commands via the Itemid parameter in an offer_view action to index.php, a different vector than CVE-2007-4506. | 7.5 |