VYPR

Com Marketplace

by Joomla

CVEs (2)

  • CVE-2010-0374Jan 21, 2010
    risk 0.03cvss epss 0.01

    Cross-site scripting (XSS) vulnerability in the Marketplace (com_marketplace) component 1.2 for Joomla! allows remote attackers to inject arbitrary web script or HTML via the catid parameter in a show_category action to index.php.

  • CVE-2008-0689Feb 12, 2008
    risk 0.03cvss epss 0.01

    SQL injection vulnerability in index.php in the Marketplace (com_marketplace) 1.1.1 and 1.1.1-pl1 component for Joomla! allows remote attackers to execute arbitrary SQL commands via the catid parameter in a show_category action.