Vulnerabilidades
Resumen — últimos 7 días
Vulnerabilidades nuevas2987▼ 96 respecto a la semana anterior
Críticas / altas1458▲ 101 respecto a la semana anterior
Nueva explotación activa (KEV)4▼ 5 respecto a la semana anterior
Sin puntuar (sin CVSS)350▼ 160 respecto a la semana anterior
152 resultados, ordenados por fecha de publicación (más recientes primero)
| CVE | Estado | Severidad | EPSS | Explotación activa | Tecnologías afectadas | Publicada ▼ | Modificada | Descripción |
|---|---|---|---|---|---|---|---|---|
| Modificada | Alta (7.5) | 0.97% | 💥 Exploit | Joomlaitalia COM AlberghiMamboitalia COM Alberghi | 24/3/2008 | 16/6/2026 | SQL injection vulnerability in the Alberghi (com_alberghi) 2.1.3 and earlier component for Mambo and Joomla! allows remote attackers to execute arbitrary SQL commands via the id parameter in a detail action to index.php. | |
| Modificada | Alta (7.5) | 0.97% | 💥 Exploit | EwritingJoomla COM EwritingMambo COM Ewriting | 12/3/2008 | 16/6/2026 | SQL injection vulnerability in index.php in the eWriting (com_ewriting) 1.2.1 module for Mambo and Joomla! allows remote attackers to execute arbitrary SQL commands via the cat parameter in a selectcat action. | |
| Modificada | Alta (7.5) | 1.2% | 💥 Exploit | Joomla COM GaryscookbookMambo COM Garyscookbook | 4/3/2008 | 16/6/2026 | SQL injection vulnerability in the Garys Cookbook (com_garyscookbook) 1.1.1 and earlier component for Mambo and Joomla! allows remote attackers to execute arbitrary SQL commands via the id parameter in a detail action to index.php. | |
| Modificada | Alta (7.5) | 0.93% | 💥 Exploit | Mamboportal.com Simpleboard | 29/2/2008 | 16/6/2026 | SQL injection vulnerability in index.php in the Simpleboard (com_simpleboard) 1.0.3 Stable component for Mambo and Joomla! allows remote attackers to execute arbitrary SQL commands via the catid parameter in a view action. | |
| Modificada | Alta (7.5) | 1.1% | — | Joomla COM DownloadsMambo COM Downloads | 21/2/2008 | 16/6/2026 | SQL injection vulnerability in index.php in the Downloads (com_downloads) component for Mambo and Joomla! allows remote attackers to execute arbitrary SQL commands via the cat parameter in a selectcat function, a different vector than CVE-2008-0652. | |
| Modificada | Alta (7.5) | 0.96% | 💥 Exploit | Joomla COM SalesrepMambo COM Salesrep | 21/2/2008 | 16/6/2026 | SQL injection vulnerability in the com_salesrep component for Joomla! and Mambo allows remote attackers to execute arbitrary SQL commands via the rid parameter in a showrep action to index.php. | |
| Modificada | Alta (7.5) | 0.97% | 💥 Exploit | Joomla COM DetailMambo COM Detail | 21/2/2008 | 16/6/2026 | SQL injection vulnerability in the com_detail component for Joomla! and Mambo allows remote attackers to execute arbitrary SQL commands via the id parameter to index.php. NOTE: this issue might be site-specific. If so, it should not be included in CVE. | |
| Modificada | Alta (7.5) | 0.95% | 💥 Exploit | Joomla COM FacileformsMambo COM Facileforms | 21/2/2008 | 16/6/2026 | SQL injection vulnerability in the Facile Forms (com_facileforms) component for Joomla! and Mambo allows remote attackers to execute arbitrary SQL commands via the catid parameter to index.php. | |
| Modificada | Alta (7.5) | 1.0% | 💥 Exploit | Joomla COM ProfileMambo COM Profile | 20/2/2008 | 16/6/2026 | SQL injection vulnerability in index.php in the com_profile component for Joomla! allows remote attackers to execute arbitrary SQL commands via the oid parameter. | |
| Modificada | Alta (7.5) | 0.93% | 💥 Exploit | Joomla COM Ricette ComponentMambo COM Ricette Component | 20/2/2008 | 16/6/2026 | SQL injection vulnerability in index.php in the Giorgio Nordo Ricette (com_ricette) 1.0 component for Joomla! and Mambo allows remote attackers to execute arbitrary SQL commands via the id parameter. | |
| Modificada | Alta (7.5) | 1.2% | 💥 Exploit | Joomla Kemas Antonius COM QuranMambo Kemas Antonius COM Quran | 20/2/2008 | 16/6/2026 | SQL injection vulnerability in index.php in the Kemas Antonius com_quran 1.1 and earlier component for Mambo and Joomla! allows remote attackers to execute arbitrary SQL commands via the surano parameter in a viewayat action. | |
| Modificada | Alta (7.5) | 1.1% | 💥 Exploit | JoomlaJoomlapixel JoogetMambo | 19/2/2008 | 16/6/2026 | SQL injection vulnerability in jooget.php in the Joomlapixel Jooget! (com_jooget) 2.6.8 component for Joomla! and Mambo allows remote attackers to execute arbitrary SQL commands via the id parameter in a detail task. | |
| Modificada | Alta (7.5) | 1.0% | 💥 Exploit | Joomla COM Filebase ComponentMambo COM Filebase Component | 19/2/2008 | 16/6/2026 | SQL injection vulnerability in the com_filebase component for Joomla! and Mambo allows remote attackers to execute arbitrary SQL commands via the filecatid parameter in a selectfolder action. | |
| Modificada | Alta (7.5) | 0.96% | 💥 Exploit | Joomla COM Scheduling ComponentMambo COM Scheduling Component | 19/2/2008 | 16/6/2026 | SQL injection vulnerability in the com_scheduling module for Joomla! and Mambo allows remote attackers to execute arbitrary SQL commands via the id parameter. | |
| Modificada | Alta (7.5) | 1.00% | 💥 Exploit | Joomla COM QuizMambo COM Quiz | 15/2/2008 | 16/6/2026 | SQL injection vulnerability in index.php in the Quiz (com_quiz) 0.81 and earlier component for Mambo and Joomla! allows remote attackers to execute arbitrary SQL commands via the tid parameter in a user_tst_shw action. | |
| Modificada | Alta (7.5) | 0.97% | 💥 Exploit | JoomlaMamboMgfi Xfaq | 15/2/2008 | 16/6/2026 | SQL injection vulnerability in index.php in the MGFi XfaQ (com_xfaq) 1.2 component for Mambo and Joomla! allows remote attackers to execute arbitrary SQL commands via the aid parameter in an answer action. | |
| Modificada | Alta (7.5) | 1.1% | 💥 Exploit | Joomla COM DOCMambo COM DOC | 14/2/2008 | 16/6/2026 | SQL injection vulnerability in index.php in the com_doc component for Joomla! and Mambo allows remote attackers to execute arbitrary SQL commands via the sid parameter in a view task. | |
| Modificada | Alta (7.5) | 1.1% | 💥 Exploit | Joomla COM CommentsMambo COM CommentsPhil Taylor CommentsPhil Taylor Review Script | 14/2/2008 | 16/6/2026 | SQL injection vulnerability in Phil Taylor Comments (com_comments, aka Review Script) 0.5.8.5g and earlier component for Mambo allows remote attackers to execute arbitrary SQL commands via the id parameter. | |
| Modificada | Alta (7.5) | 1.00% | 💥 Exploit | Joomla COM NeogalleryMambo COM Neogallery | 13/2/2008 | 16/6/2026 | SQL injection vulnerability in index.php in the Neogallery (com_neogallery) 1.1 component for Joomla! allows remote attackers to execute arbitrary SQL commands via the catid parameter in a show action. | |
| Modificada | Alta (7.5) | 0.97% | 💥 Exploit | Joomla COM GalleryMambo COM Gallery | 13/2/2008 | 16/6/2026 | SQL injection vulnerability in index.php in the Gallery (com_gallery) component for Mambo and Joomla! allows remote attackers to execute arbitrary SQL commands via the id parameter in a detail action. | |
| Modificada | Alta (7.5) | 0.93% | 💥 Exploit | Mambo COM Sermon | 12/2/2008 | 16/6/2026 | SQL injection vulnerability in index.php in the Sermon (com_sermon) 0.2 component for Mambo allows remote attackers to execute arbitrary SQL commands via the gid parameter. | |
| Modificada | Alta (7.5) | 0.97% | 💥 Exploit | Joomla COM NeoreferencesMambo COM Neoreferences | 12/2/2008 | 16/6/2026 | SQL injection vulnerability in index.php in the NeoReferences (com_neoreferences) 1.3.1 and 1.3.3 component for Joomla! allows remote attackers to execute arbitrary SQL commands via the catid parameter. | |
| Modificada | Alta (7.5) | 0.93% | 💥 Exploit | Joomla COM DownloadsMambo COM Downloads | 7/2/2008 | 16/6/2026 | SQL injection vulnerability in index.php in the Downloads (com_downloads) component for Mambo and Joomla! allows remote attackers to execute arbitrary SQL commands via the filecatid parameter in a selectfolder action. | |
| Modificada | Alta (7.5) | 1.3% | — | Joomla COM Sobi2Mambo COM Sobi2Sigsiu.net Sobi2 | 6/2/2008 | 16/6/2026 | SQL injection vulnerability in index.php in the Sigsiu Online Business Index 2 (SOBI2, com_sobi2) 2.5.3 component for Joomla! and Mambo allows remote attackers to execute arbitrary SQL commands via the catid parameter. NOTE: the provenance of this information is unknown; the details are obtained solely from third… | |
| Modificada | Alta (7.5) | 0.93% | 💥 Exploit | Amazoop AwesomJoomla COM AwesomMambo COM Awesom | 6/2/2008 | 16/6/2026 | SQL injection vulnerability in index.php in the amazOOP Awesom! (com_awesom) 0.3.2component for Mambo and Joomla! allows remote attackers to execute arbitrary SQL commands via the listid parameter in a viewlist task. |