VYPR

Joomlaexplorer

by Joomlacode

CVEs (2)

  • CVE-2008-1848Apr 16, 2008
    risk 0.03cvss epss 0.03

    Cross-site scripting (XSS) vulnerability in the joomlaXplorer (com_joomlaxplorer) Mambo/Joomla! component 1.6.2 and earlier allows remote attackers to inject arbitrary web script or HTML via the error parameter in a show_error action to index.php.

  • CVE-2008-1849Apr 16, 2008
    risk 0.03cvss epss 0.04

    Directory traversal vulnerability in index.php in the joomlaXplorer (com_joomlaxplorer) Mambo/Joomla! component 1.6.2 and earlier allows remote attackers to list arbitrary directories via a .. (dot dot) in the dir parameter in a show_error action.