Vulnerabilities > Simon Philips

DATE CVE VULNERABILITY TITLE RISK
2011-10-08 CVE-2010-4904 SQL Injection vulnerability in Simon Philips COM Aardvertiser 2.1/2.1.1
SQL injection vulnerability in the Aardvertiser (com_aardvertiser) component 2.1 and 2.1.1 for Joomla! allows remote attackers to execute arbitrary SQL commands via the cat_name parameter in a view action to index.php.
network
low complexity
simon-philips joomla CWE-89
7.5
2010-08-16 CVE-2010-3028 Permissions, Privileges, and Access Controls vulnerability in Simon Philips Aardvertiser 2.2.1
The Aardvertiser component before 2.2.1 for Joomla! uses insecure permissions (777) in unspecified folders, which allows local users to modify, create, or delete certain files.
local
low complexity
simon-philips joomla CWE-264
3.6