Mad4Joomla Mailforms Component是一款基于Joomla!的一个表单设计向导组件,你可以借助此组件设计出你需要的各种表单。 Mad4Joomla Mailforms (com_mad4joomla)组件1.1.8.2之前的版本中存在SQL注入漏洞。远程攻击者可以借助对index.php的jid参数,执行任意SQL指令。
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
| Vendor | Product | Affected Versions | CPE | Subscribe |
|---|---|---|---|---|
| - | n/a | n/a | - |
|
| # | POC Description | Source Link | Shenlong Link |
|---|
No public POC found.
Login to generate AI POC| CVE-2009-0648 | Falt4 CMS RC "admin/index.php" 跨站请求伪造漏洞 | |
| CVE-2008-6194 | Microsoft Windows DNS服务器 内存泄露漏洞 | |
| CVE-2008-6193 | Sam Crew MyBlog 'cleartext'敏感信息泄露漏洞 | |
| CVE-2008-6192 | Sun Java System Portal Server Portlets 跨站脚本攻击漏洞 | |
| CVE-2008-6191 | IntrinsicSWIMAGE Encore Master 'Conductor.exe'密码信息泄露漏洞 | |
| CVE-2008-6190 | Eeb-WeltEEBCMS 'index.php'跨站脚本攻击漏洞 | |
| CVE-2008-6189 | Gforge 多个脚本SQL注入漏洞 | |
| CVE-2008-6188 | Gforge 脚本editprofile.php SQL注入漏洞 | |
| CVE-2008-6187 | Gforge 脚本shownotes.php SQL注入漏洞 | |
| CVE-2008-6186 | RaidenFTPD MLST命令远程栈溢出漏洞 | |
| CVE-2008-6185 | NoticeWare Email Server NG 'PASS'命令拒绝服务漏洞 | |
| CVE-2008-6184 | Medialab-Karlsruhe OwnBiblio组件'index.php' SQL注入漏洞 | |
| CVE-2008-6183 | My PHP Indexer 'index.php'目录遍历漏洞 | |
| CVE-2008-6182 | Joomla! Ignite Gallery "index.php" SQL注入漏洞 | |
| CVE-2008-6180 | NewLife Blogger "nlb3" Cookie SQL注入漏洞 | |
| CVE-2008-6179 | IndexScript "sug_cat.php" SQL注入漏洞 | |
| CVE-2008-6165 | Easy-Script CS-Partner "gestion.php" 多个SQL注入漏洞 | |
| CVE-2009-0647 | Microsoft Windows Live Messenger字符集数据远程拒绝服务漏洞 | |
| CVE-2008-6178 | FCKeditor connector.php任意文件上传漏洞 | |
| CVE-2008-6177 | Publicwarehouse LightBlog本地文件包含漏洞 |
Showing top 20 of 32 CVEs. View all on vendor page → →
No comments yet