Hinweis: Diese Liste kann unvollständig sein. Daten werden ohne Gewähr im Ursprungsformat bereitgestellt.
8.8
CVE-2026-65885
- EPSS 0.29%
- Veröffentlicht 29.07.2026 12:05:48
- Zuletzt bearbeitet 05.08.2026 18:37:52
Joomla Extension - balbooa.com - Authenticated arbitrary file upload in Gridbox < 2.20.2 - File upload methods allows authenticated attackers to upload arbitrary files. Turns into an authenticated RCE if combined with CVE-2026-65884 as the required a...
9.4
CVE-2026-61425
- EPSS 0.33%
- Veröffentlicht 20.07.2026 18:45:51
- Zuletzt bearbeitet 23.07.2026 16:17:45
Joomla Extension - balbooa.com - Authentication bypass in Gridbox < 1.6.0 - The Joomla extension Gridbox is vulnerable an authenticated bypass, potentially leading to full admin access.
6.1
CVE-2018-11690
- EPSS 33.51%
- Veröffentlicht 14.06.2018 20:29:00
- Zuletzt bearbeitet 21.11.2024 03:43:49
The Balbooa Gridbox extension version 2.4.0 and previous versions for Joomla! is vulnerable to cross-site scripting, caused by improper validation of user-supplied input. A remote attacker could exploit this vulnerability via a crafted URL to execute...