Vulnerabilities (CVE)

Join the Common Vulnerabilities and Exposures (CVE) community and start to get notified about new vulnerabilities.

Filtered by vendor Joomlacalendars Subscribe
Total 3 CVE
CVE Vendors Products Updated CVSS v2 CVSS v3
CVE-2018-6397 1 Joomlacalendars 1 Picture Calendar 2018-02-15 5.0 MEDIUM 7.5 HIGH
Directory Traversal exists in the Picture Calendar 3.1.4 component for Joomla! via the list.php folder parameter.
CVE-2018-6395 1 Joomlacalendars 1 Visual Calendar 2018-02-14 7.5 HIGH 9.8 CRITICAL
SQL Injection exists in the Visual Calendar 3.1.3 component for Joomla! via the id parameter in a view=load action.
CVE-2018-6398 1 Joomlacalendars 1 Event Calendar 2018-02-14 7.5 HIGH 9.8 CRITICAL
SQL Injection exists in the CP Event Calendar 3.0.1 component for Joomla! via the id parameter in a task=load action.