|
246611
|
9.8 |
CRITICAL
Network
|
thephpfactory
|
collection_factory
|
SQL Injection exists in the Collection Factory 4.1.9 component for Joomla! via the filter_order or filter_order_Dir parameter.
|
CWE-89
SQL Injection
|
CVE-2018-17383
|
2024-11-21 12:54 |
2018-09-28 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
246612
|
9.8 |
CRITICAL
Network
|
thephpfactory
|
jobs_factory
|
SQL Injection exists in the Jobs Factory 2.0.4 component for Joomla! via the filter_letter parameter.
|
CWE-89
SQL Injection
|
CVE-2018-17382
|
2024-11-21 12:54 |
2018-09-28 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
246613
|
9.8 |
CRITICAL
Network
|
thephpfactory
|
article_factory_manager
|
SQL Injection exists in the Article Factory Manager 4.3.9 component for Joomla! via the start_date, m_start_date, or m_end_date parameter.
|
CWE-89
SQL Injection
|
CVE-2018-17380
|
2024-11-21 12:54 |
2018-09-28 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
246614
|
9.8 |
CRITICAL
Network
|
thephpfactory
|
raffle_factory
|
SQL Injection exists in the Raffle Factory 3.5.2 component for Joomla! via the filter_order_Dir or filter_order parameter.
|
CWE-89
SQL Injection
|
CVE-2018-17379
|
2024-11-21 12:54 |
2018-09-28 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
246615
|
9.8 |
CRITICAL
Network
|
thephpfactory
|
penny_auction_factory
|
SQL Injection exists in the Penny Auction Factory 2.0.4 component for Joomla! via the filter_order_Dir or filter_order parameter.
|
CWE-89
SQL Injection
|
CVE-2018-17378
|
2024-11-21 12:54 |
2018-09-28 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
246616
|
9.8 |
CRITICAL
Network
|
extensiondeveloper
|
questions
|
SQL Injection exists in the Questions 1.4.3 component for Joomla! via the term, userid, users, or groups parameter.
|
CWE-89
SQL Injection
|
CVE-2018-17377
|
2024-11-21 12:54 |
2018-09-28 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
246617
|
9.8 |
CRITICAL
Network
|
thephpfactory
|
reverse_auction_factory
|
SQL Injection exists in the Reverse Auction Factory 4.3.8 component for Joomla! via the filter_order_Dir, cat, or filter_letter parameter.
|
CWE-89
SQL Injection
|
CVE-2018-17376
|
2024-11-21 12:54 |
2018-09-28 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
246618
|
9.8 |
CRITICAL
Network
|
joomlathat
|
music_collection
|
SQL Injection exists in the Music Collection 3.0.3 component for Joomla! via the id parameter.
|
CWE-89
SQL Injection
|
CVE-2018-17375
|
2024-11-21 12:54 |
2018-09-28 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
246619
|
9.8 |
CRITICAL
Network
|
viabtc
|
viabtc_exchange_server
|
utils/ut_ws_svr.c in ViaBTC Exchange Server before 2018-08-21 has an integer overflow leading to memory corruption.
|
CWE-190
Integer Overflow or Wraparound
|
CVE-2018-17570
|
2024-11-21 12:54 |
2018-09-27 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
246620
|
9.8 |
CRITICAL
Network
|
viabtc
|
viabtc_exchange_server
|
network/nw_buf.c in ViaBTC Exchange Server before 2018-08-21 has an integer overflow leading to memory corruption.
|
CWE-190
Integer Overflow or Wraparound
|
CVE-2018-17569
|
2024-11-21 12:54 |
2018-09-27 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|