Április havi Joomla biztonsági hibák

Április hónapban a következő Joomla biztonsági hibák kerültek napvilágra, mint azt már megszokhattuk szép nagy listáról van szó:

2010.04.28.-2010.04.29.

  • Joomla Component Wap4Joomla (wapmain.php) SQL Injection Vulnerability
  • Joomla JE Property Finder Component Upload Vulnerability
  • Joomla NoticeBoard Component “controller” File Inclusion Vulnerability
  • Joomla SmartSite Component “controller” File Inclusion Vulnerability
  • Joomla ABC Component “sectionid” SQL Injection Vulnerability
  • Joomla Graphics Component “controller” File Inclusion Vulnerability

2010.04.22.-2010.04.27.

  • Vulnerability in Joomla Component com_caddy
  • Joomla Component com_joomradio SQL injection vulnerability
  • Joomla Password Reset Weakness and Session Fixation Vulnerability
  • Joomla! Portfolio Component Command Injection and File Enumeration
  • Joomla! Webmoney WMI Component “controller” Local File Inclusion
  • Joomla MMS Blog Component “controller” File Inclusion Vulnerability

2010.04.20.-2010.04.21.

  • Joomla Component JTM Reseller SQL injection vulnerability
  • Joomla com_jnewspaper (cid) SQL Injection Vulnerability
  • Joomla Tárhely Component com_portfolio Local File Disclosure
  • Joomla Component MMS Blog com_mmsblog Local File Inclusion Vulnerability
  • Joomla Component OrgChart com_orgchart Local File Inclusion Vulnerability
  • Joomla Component wmi (com_wmi) LFI Vulnerability