Vulnerabilities (CVE)

Filtered by vendor Joomlacalendars Subscribe
Total 3 CVE
CVE Vendors Products Updated CVSS v2 CVSS v3
CVE-2018-6398 1 Joomlacalendars 1 Event Calendar 2024-11-21 7.5 HIGH 9.8 CRITICAL
SQL Injection exists in the CP Event Calendar 3.0.1 component for Joomla! via the id parameter in a task=load action.
CVE-2018-6397 1 Joomlacalendars 1 Picture Calendar 2024-11-21 5.0 MEDIUM 7.5 HIGH
Directory Traversal exists in the Picture Calendar 3.1.4 component for Joomla! via the list.php folder parameter.
CVE-2018-6395 1 Joomlacalendars 1 Visual Calendar 2024-11-21 7.5 HIGH 9.8 CRITICAL
SQL Injection exists in the Visual Calendar 3.1.3 component for Joomla! via the id parameter in a view=load action.