Loading HuntDB...

Vulnerabilities

CVE-2024-27187

HIGH

Improper Access Controls allows backend users to overwrite their username when disallowed.

Published Aug 20, 2024

CVE-2023-23752

MEDIUM

An issue was discovered in Joomla! 4.0.0 through 4.2.7. An improper access check allows unauthorized access to webservice endpoints.

Published Feb 16, 2023

CVE-2011-4908

UNKNOWN

TinyBrowser plugin for Joomla! before 1.5.13 allows arbitrary file upload via upload.php.

Published Feb 12, 2020

CVE-2011-4906

UNKNOWN

Tiny browser in TinyMCE 3.0 editor in Joomla! before 1.5.13 allows file upload and arbitrary PHP code execution.

Published Feb 12, 2020

CVE-2011-1151

UNKNOWN

Joomla! 1.6.0 is vulnerable to SQL Injection via the filter_order and filer_order_Dir parameters.

Published Feb 05, 2020

CVE-2011-4912

UNKNOWN

Joomla! com_mailto 1.5.x through 1.5.13 has an automated mail timeout bypass.

Published Feb 04, 2020

CVE-2011-3629

UNKNOWN

Joomla! core 1.7.1 allows information disclosure due to weak encryption

Published Feb 04, 2020

CVE-2011-4937

UNKNOWN

Joomla! 1.7.1 has core information disclosure due to inadequate error checking.

Published Feb 04, 2020

CVE-2011-3595

UNKNOWN

Multiple Cross-site Scripting (XSS) vulnerabilities exist in Joomla! through 1.7.0 in index.php in the search word, extension, asset, and author parameters.

Published Jan 22, 2020

CVE-2011-4907

UNKNOWN

Joomla! 1.5x through 1.5.12: Missing JEXEC Check

Published Jan 15, 2020

CVE-2012-1563

UNKNOWN

Joomla! before 2.5.3 allows Admin Account Creation.

Published Jan 15, 2020

CVE-2012-1562

UNKNOWN

Joomla! core before 2.5.3 allows unauthorized password change.

Published Jan 15, 2020