CVE-2018-25354
- EPSS 0.13%
- Veröffentlicht 23.05.2026 18:30:54
- Zuletzt bearbeitet 26.05.2026 19:37:32
Joomla Component jomres 9.11.2 contains a cross-site request forgery vulnerability that allows attackers to modify user account information by tricking authenticated users into visiting malicious pages. Attackers can craft HTML forms targeting the ac...
CVE-2013-3932
- EPSS 1.76%
- Veröffentlicht 02.01.2020 20:15:13
- Zuletzt bearbeitet 21.11.2024 01:54:33
SQL injection vulnerability in the Jomres (com_jomres) component before 7.3.1 for Joomla! allows remote authenticated users with the "Business Manager" permission to execute arbitrary SQL commands via the id parameter in an editProfile action to admi...
CVE-2013-3931
- EPSS 0.97%
- Veröffentlicht 02.01.2020 20:15:12
- Zuletzt bearbeitet 21.11.2024 01:54:33
Cross-site scripting (XSS) vulnerability in the Jomres (com_jomres) component before 7.3.1 for Joomla! allows remote authenticated users with the "Business Manager" permission to inject arbitrary web script or HTML via the property_name parameter, re...