Vulnerabilities (CVE)

Filtered by vendor Web-dorado Subscribe
CVE Vendors Products Updated CVSS v2 CVSS v3
CVE-2018-5991 1 Web-dorado 1 Form Maker 2018-03-05 7.5 HIGH 9.8 CRITICAL
SQL Injection exists in the Form Maker 3.6.12 component for Joomla! via the id, from, or to parameter in a view=stats request, a different vulnerability than CVE-2015-2798.
CVE-2018-5981 1 Web-dorado 1 Gallery Wd 2018-03-02 7.5 HIGH 9.8 CRITICAL
SQL Injection exists in the Gallery WD 1.3.6 component for Joomla! via the tag_id parameter or gallery_id parameter.
CVE-2015-2798 1 Web-dorado 1 Contact Form Maker 2017-08-10 7.5 HIGH 9.8 CRITICAL
SQL injection vulnerability in Joomla! Component Contact Form Maker 1.0.1 allows remote attackers to execute arbitrary SQL commands via the id parameter.
CVE-2017-7719 1 Web-dorado 1 Spider Event Calendar 2017-04-20 7.5 HIGH 9.8 CRITICAL
SQL injection in the Spider Event Calendar (aka spider-event-calendar) plugin before 1.5.52 for WordPress is exploitable with the order_by parameter to calendar_functions.php or widget_Theme_functions.php, related to front_end/frontend_functions.php.