CVE-2007-6272
- EPSS 0.01%
- Published 07.12.2007 11:46:00
- Last modified 09.04.2025 00:30:58
Multiple SQL injection vulnerabilities in index.php in Joomla! 1.5 RC3 allow remote attackers to execute arbitrary SQL commands via (1) the view parameter to the com_content component, (2) the task parameter to the com_search component, or (3) the op...
CVE-2007-5457
- EPSS 0.26%
- Published 14.10.2007 19:17:00
- Last modified 09.04.2025 00:30:58
Multiple PHP remote file inclusion vulnerabilities in Michael Dempfle Joomla Flash Uploader (com_jfu or com_joomla_flash_uploader) 2.5.1 component for Joomla! allow remote attackers to execute arbitrary PHP code via a URL in the mosConfig_absolute_pa...
CVE-2007-5451
- EPSS 0.11%
- Published 14.10.2007 18:17:00
- Last modified 09.04.2025 00:30:58
PHP remote file inclusion vulnerability in admin.color.php in the com_colorlab (aka com_color) 1.0 component for Joomla! allows remote attackers to execute arbitrary PHP code via a URL in the mosConfig_live_site parameter.
CVE-2007-5427
- EPSS 0.37%
- Published 12.10.2007 23:17:00
- Last modified 09.04.2025 00:30:58
Cross-site scripting (XSS) vulnerability in the com_search component in Joomla! 1.0.13 and earlier allows remote attackers to inject arbitrary web script or HTML via the searchword parameter. NOTE: this might be related to CVE-2007-4189.1.
CVE-2007-5410
- EPSS 0.31%
- Published 12.10.2007 18:17:00
- Last modified 09.04.2025 00:30:58
PHP remote file inclusion vulnerability in admin.wmtrssreader.php in the webmaster-tips.net Flash RSS Reader (com_wmtrssreader) 1.0 component for Joomla! allows remote attackers to execute arbitrary PHP code via a URL in the mosConfig_live_site param...
CVE-2007-5389
- EPSS 0.06%
- Published 12.10.2007 10:17:00
- Last modified 09.04.2025 00:30:58
PHP remote file inclusion vulnerability in preview.php in the swMenuFree (com_swmenufree) 4.6 component for Joomla! allows remote attackers to execute arbitrary PHP code via a URL in the mosConfig_absolute_path parameter. NOTE: a reliable third part...
CVE-2007-5363
- EPSS 0.06%
- Published 11.10.2007 01:17:00
- Last modified 09.04.2025 00:30:58
PHP remote file inclusion vulnerability in admin.panoramic.php in the Panoramic Picture Viewer (com_panoramic) mambot (plugin) 1.0 for Joomla! allows remote attackers to execute arbitrary PHP code via a URL in the mosConfig_live_site parameter. NOTE...
CVE-2007-5362
- EPSS 0.23%
- Published 11.10.2007 01:17:00
- Last modified 09.04.2025 00:30:58
Multiple PHP remote file inclusion vulnerabilities in the Avant-Garde Solutions MOSMedia Lite (com_mosmedia) 4.5.1 component for Mambo and Joomla! allow remote attackers to execute arbitrary PHP code via a URL in the mosConfig_absolute_path parameter...
CVE-2007-5309
- EPSS 7.98%
- Published 09.10.2007 21:17:00
- Last modified 09.04.2025 00:30:58
PHP remote file inclusion vulnerability in admin.wmtgallery.php in the webmaster-tips.net Flash Image Gallery (com_wmtgallery) 1.0 component for Joomla! allows remote attackers to execute arbitrary PHP code via a URL in the mosConfig_live_site parame...
CVE-2007-5310
- EPSS 0.17%
- Published 09.10.2007 21:17:00
- Last modified 09.04.2025 00:30:58
PHP remote file inclusion vulnerability in admin.wmtportfolio.php in the webmaster-tips.net wmtportfolio 1.0 (com_wmtportfolio) component for Joomla! allows remote attackers to execute arbitrary PHP code via a URL in the mosConfig_absolute_path param...