VYPR

Com Aardvertiser

by Simon Philips

CVEs (2)

  • CVE-2010-4904Oct 8, 2011
    risk 0.03cvss epss 0.00

    SQL injection vulnerability in the Aardvertiser (com_aardvertiser) component 2.1 and 2.1.1 for Joomla! allows remote attackers to execute arbitrary SQL commands via the cat_name parameter in a view action to index.php. NOTE: some of these details are obtained from third party…

  • CVE-2010-3028Aug 16, 2010
    risk 0.00cvss epss 0.00

    The Aardvertiser component before 2.2.1 for Joomla! uses insecure permissions (777) in unspecified folders, which allows local users to modify, create, or delete certain files.