← Back

Ijoomla

ijoomla

5 CVEs • 5 products

Products (5)

Click to collapse
Toggle
Com Rssfeeder
com_rssfeeder
Com Magazine
com_magazine
Ad Agency
ad_agency
Guru
guru

CVEs (5)

CVE
VENDORS
PRODUCTS
UPDATED
PUBLISHED
CVSS
1Ijoomla
1Guru
Nov 21, 2024
May 6, 2022
N/A· v4
7.5 HIGH· v3
5.0 MEDIUM· v2
Joomla Guru extension 5.2.5 is affected by: Insecure Permissions. The impact is: obtain sensitive information (remote). The component is: Access to private information and components, possibility to view other users' inf...Show more
Joomla Guru extension 5.2.5 is affected by: Insecure Permissions. The impact is: obtain sensitive information (remote). The component is: Access to private information and components, possibility to view other users' information. Information disclosure Access to private information and components, possibility to view other users' information.Show less
1Ijoomla
1Ad Agency
Nov 21, 2024
Jan 14, 2018
N/A· v4
9.8 CRITICAL· v3
7.5 HIGH· v2
The iJoomla com_adagency plugin 6.0.9 for Joomla! allows SQL injection via the `advertiser_status` and `status_select` parameters to index.php.
1Ijoomla
1Com Magazine
Apr 29, 2026
Oct 8, 2011
N/A· v4
N/A· v3
7.5 HIGH· v2
PHP remote file inclusion vulnerability in iJoomla Magazine (com_magazine) component 3.0.1 for Joomla! allows remote attackers to execute arbitrary PHP code via a URL in the config parameter to magazine.functions.php.
1Ijoomla
1Com News Portal
Apr 29, 2026
Apr 8, 2010
N/A· v4
N/A· v3
5.0 MEDIUM· v2
Directory traversal vulnerability in the iJoomla News Portal (com_news_portal) component 1.5.x for Joomla! allows remote attackers to read arbitrary files via a .. (dot dot) in the controller parameter to index.php.
1Ijoomla
1Com Rssfeeder
Apr 23, 2026
Jun 17, 2009
N/A· v4
N/A· v3
7.5 HIGH· v2
SQL injection vulnerability in the iJoomla RSS Feeder (com_ijoomla_rss) component for Joomla! allows remote attackers to execute arbitrary SQL commands via the cat parameter in an xml action to index.php.