Vulnerabilities (CVE)

Filtered by vendor Jextn Subscribe
Total 8 CVE
CVE Vendors Products Updated CVSS v2 CVSS v3
CVE-2018-6575 1 Jextn 1 Classified 2024-02-28 7.5 HIGH 9.8 CRITICAL
SQL Injection exists in the JEXTN Classified 1.0.0 component for Joomla! via a view=boutique&sid= request.
CVE-2018-6579 1 Jextn 1 Reverse Auction 2024-02-28 7.5 HIGH 9.8 CRITICAL
SQL Injection exists in the JEXTN Reverse Auction 3.1.0 component for Joomla! via a view=products&uid= request.
CVE-2018-6578 1 Jextn 1 Je Paypervideo 2024-02-28 7.5 HIGH 9.8 CRITICAL
SQL Injection exists in the JE PayperVideo 3.0.0 component for Joomla! via the usr_plan parameter in a view=myplans&task=myplans.usersubscriptions request.
CVE-2018-6577 1 Jextn 1 Membership 2024-02-28 7.5 HIGH 9.8 CRITICAL
SQL Injection exists in the JEXTN Membership 3.1.0 component for Joomla! via the usr_plan parameter in a view=myplans&task=myplans.usersubscriptions request.
CVE-2017-17871 1 Jextn 1 Jextn Question And Answer 2024-02-28 7.5 HIGH 9.8 CRITICAL
The "JEXTN Question And Answer" extension 3.1.0 for Joomla! has SQL Injection via the an parameter in a view=tags action, or the ques-srch parameter.
CVE-2017-17875 1 Jextn 1 Jextn Faq Pro 2024-02-28 7.5 HIGH 9.8 CRITICAL
The JEXTN FAQ Pro extension 4.0.0 for Joomla! has SQL Injection via the id parameter in a view=category action.
CVE-2017-17872 1 Jextn 1 Jextn Video Gallery 2024-02-28 7.5 HIGH 9.8 CRITICAL
The JEXTN Video Gallery extension 3.0.5 for Joomla! has SQL Injection via the id parameter in a view=category action.
CVE-2010-3211 2 Jextn, Joomla 2 Com Jefaqpro, Joomla\! 2024-02-28 7.5 HIGH N/A
Multiple SQL injection vulnerabilities in the JE FAQ Pro (com_jefaqpro) component 1.5.0 for Joomla! allow remote attackers to execute arbitrary SQL commands via category categorylist operations with (1) the catid parameter or (2) the catid parameter in a lists action.