Vulnerabilities
Vulnerable Software
Cmsjunkie:  Security Vulnerabilities
The J-BusinessDirectory extension before 5.2.9 for Joomla! allows Reverse Tabnabbing. In some configurations, the link to the business website can be entered by any user. If it doesn't contain rel="noopener" (or similar attributes such as noreferrer), the tabnabbing may occur. To reproduce the bug, create a business with a website link that contains JavaScript to exploit the window.opener property (for example, by setting window.opener.location).
CVSS Score
6.5
EPSS Score
0.003
Published
2020-02-03
Cross-site scripting (XSS) vulnerability in the CMSJunkie J-ClassifiedsManager component for Joomla! allows remote attackers to inject arbitrary web script or HTML via the view parameter to /classifieds.
CVSS Score
4.3
EPSS Score
0.033
Published
2015-02-04
SQL injection vulnerability in the CMSJunkie J-ClassifiedsManager component for Joomla! allows remote attackers to execute arbitrary SQL commands via the id parameter in a viewad task to classifieds/offerring-ads.
CVSS Score
7.5
EPSS Score
0.009
Published
2015-02-04


Contact Us

Shodan ® - All rights reserved