VYPR

Com If Nexus

by Inertialfate

CVEs (2)

  • CVE-2009-4679Mar 8, 2010
    risk 0.04cvss epss 0.06

    Directory traversal vulnerability in the inertialFATE iF Portfolio Nexus (com_if_nexus) component 1.5 for Joomla! allows remote attackers to include and execute arbitrary local files via a .. (dot dot) in the controller parameter to index.php.

  • CVE-2009-4057Nov 24, 2009
    risk 0.03cvss epss 0.00

    SQL injection vulnerability in the inertialFATE iF Portfolio Nexus (com_if_nexus) component 1.1 for Joomla! allows remote attackers to execute arbitrary SQL commands via the id parameter in an item action to index.php.