Vulnerabilities
Vulnerable Software
Joomla:  >> Joomla!  >> 1.5.10  Security Vulnerabilities
Joomla! 1.5x through 1.5.12: Missing JEXEC Check
CVSS Score
5.3
EPSS Score
0.0
Published
2020-01-15
Joomla! core before 2.5.3 allows unauthorized password change.
CVSS Score
7.5
EPSS Score
0.0
Published
2020-01-15
Joomla! before 2.5.3 allows Admin Account Creation.
CVSS Score
7.5
EPSS Score
0.004
Published
2020-01-15
An issue was discovered in Joomla! before 3.9.5. The Media Manager component does not properly sanitize the folder parameter, allowing attackers to act outside the media manager root directory.
CVSS Score
9.8
EPSS Score
0.832
Published
2019-04-10
An issue was discovered in Joomla! before 3.9.3. A combination of specific web server configurations, in connection with specific file types and browser-side MIME-type sniffing, causes an XSS attack vector.
CVSS Score
6.1
EPSS Score
0.001
Published
2019-02-12
An issue was discovered in Joomla! before 3.8.13. If an attacker gets access to the mail account of an user who can approve admin verifications in the registration process, he can activate himself.
CVSS Score
8.8
EPSS Score
0.005
Published
2018-10-09
An issue was discovered in Joomla! before 3.8.12. Inadequate output filtering on the user profile page could lead to a stored XSS attack.
CVSS Score
5.4
EPSS Score
0.001
Published
2018-08-29
An issue was discovered in Joomla! before 3.8.12. Inadequate checks regarding disabled fields can lead to an ACL violation.
CVSS Score
7.5
EPSS Score
0.001
Published
2018-08-29
An issue was discovered in Joomla! before 3.8.12. Inadequate checks in the InputFilter class could allow specifically prepared phar files to pass the upload filter.
CVSS Score
9.8
EPSS Score
0.007
Published
2018-08-29
An issue was discovered in com_fields in Joomla! Core before 3.8.8. Inadequate filtering allows users authorised to create custom fields to manipulate the filtering options and inject an unvalidated option.
CVSS Score
6.5
EPSS Score
0.002
Published
2018-05-22


Contact Us

Shodan ® - All rights reserved