
CVE-2010-2044 – Joomla! Component Komento 1.0.0 - 'sid' SQL Injection
https://notcve.org/view.php?id=CVE-2010-2044
25 May 2010 — SQL injection vulnerability in the Konsultasi (com_konsultasi) component 1.0.0 for Joomla! allows remote attackers to execute arbitrary SQL commands via the sid parameter in a detail action to index.php. Vulnerabilidad de inyección SQL en el componente Konsultasi (com_konsultasi) v1.0.0 para Joomla! permite a atacantes remotos ejecutar comandos SQL de su elección a través del parámetro sid en la acción detail en index.php. • https://www.exploit-db.com/exploits/12590 • CWE-89: Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') •

CVE-2010-2045 – Joomla! Component FDione Form Wizard 1.0.2 - Local File Inclusion
https://notcve.org/view.php?id=CVE-2010-2045
25 May 2010 — Directory traversal vulnerability in the Dione Form Wizard (aka FDione or com_dioneformwizard) component 1.0.2 for Joomla! allows remote attackers to read arbitrary files via directory traversal sequences in the controller parameter to index.php. Vulnerabilidad de salto de directorio en el componente Dione Form Wizard (aka FDione or com_dioneformwizard) v1.0.2 de Joomla! permite a atacantes remotos leer ficheros de su elección mediante secuencias de salto de directorio en el parámetro "controller" sobre ind... • https://www.exploit-db.com/exploits/12595 • CWE-22: Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal') •

CVE-2010-2046
https://notcve.org/view.php?id=CVE-2010-2046
25 May 2010 — Multiple cross-site scripting (XSS) vulnerabilities in the ActiveHelper LiveHelp (com_activehelper_livehelp) component 2.0.3 for Joomla! allow remote attackers to inject arbitrary web script or HTML via (1) the DOMAINID parameter to server/cookies.php or (2) the SERVER parameter to server/index.php. Múltiples vulnerabilidades de secuencias de comandos en sitios cruzados (XSS) en el componente ActiveHelper LiveHelp (com_activehelper_livehelp) v2.0.3 de Joomla! permiten a atacantes remotos inyectar codigo de ... • http://packetstormsecurity.org/1005-exploits/joomlaactivehelper-xss.txt • CWE-79: Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') •

CVE-2010-2050 – Joomla! Component MS Comment 0.8.0b - Local File Inclusion
https://notcve.org/view.php?id=CVE-2010-2050
25 May 2010 — Directory traversal vulnerability in the Moron Solutions MS Comment (com_mscomment) component 0.8.0b for Joomla! allows remote attackers to read arbitrary files via a .. (dot dot) in the controller parameter to index.php. Vulnerabilidad de salto de directorio en el componente Moron Solutions MS Comment (com_mscomment) v0.8.0b de Joomla! permite a atacantes remotos leer ficheros de su elección a través de .. • https://www.exploit-db.com/exploits/12611 • CWE-22: Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal') •

CVE-2010-2033 – Joomla! Component Percha Multicategory Article 0.6 - 'Controller' Arbitrary File Access
https://notcve.org/view.php?id=CVE-2010-2033
25 May 2010 — Directory traversal vulnerability in the Percha Multicategory Article (com_perchacategoriestree) component 0.6 for Joomla! allows remote attackers to read arbitrary files and possibly have unspecified other impact via a .. (dot dot) in the controller parameter to index.php. Vulnerabilidad de salto de directorio en el componente Percha Multicategory Article (com_perchacategoriestree) v0.6 de Joomla!. Permite a atacantes remotos leer ficheros de su elección y, posiblemente, realizar otras acciones a través de... • https://www.exploit-db.com/exploits/34008 • CWE-22: Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal') •

CVE-2010-2034 – Joomla! Component Percha Image Attach 1.1 - 'Controller' Traversal Arbitrary File Access
https://notcve.org/view.php?id=CVE-2010-2034
25 May 2010 — Directory traversal vulnerability in the Percha Image Attach (com_perchaimageattach) component 1.1 for Joomla! allows remote attackers to read arbitrary files and possibly have unspecified other impact via a .. (dot dot) in the controller parameter to index.php. Vulnerabilidad de salto de directorio en el componente Percha Image Attach (com_perchaimageattach) v1.1 de Joomla!. Permite a atacantes remotos leer ficheros de su elección y, posiblemente, realizar otras acciones a través de un .. • https://www.exploit-db.com/exploits/34003 • CWE-22: Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal') •

CVE-2010-2035 – Joomla! Component Percha Gallery 1.6 Beta - 'Controller' Traversal Arbitrary File Access
https://notcve.org/view.php?id=CVE-2010-2035
25 May 2010 — Directory traversal vulnerability in the Percha Gallery (com_perchagallery) component 1.6 Beta for Joomla! allows remote attackers to read arbitrary files and possibly have unspecified other impact via a .. (dot dot) in the controller parameter to index.php. Vulnerabilidad de salto de directorio en el componente Percha Gallery (com_perchagallery) v1.6 Beta de Joomla!. Permite a atacantes remotos leer ficheros de su elección y, posiblemente, tener otro impacto a través de un .. • https://www.exploit-db.com/exploits/34006 • CWE-22: Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal') •

CVE-2010-2036 – Joomla! Component Percha Fields Attach 1.0 - 'Controller' Traversal Arbitrary File Access
https://notcve.org/view.php?id=CVE-2010-2036
25 May 2010 — Directory traversal vulnerability in the Percha Fields Attach (com_perchafieldsattach) component 1.x for Joomla! allows remote attackers to read arbitrary files and possibly have unspecified other impact via a .. (dot dot) in the controller parameter to index.php. Vulnerabilidad de salto de directorio en el componente Percha Fields Attach (com_perchafieldsattach) v1.x de Joomla!. Permite a atacantes remotos leer ficheros de su elección y, posiblemente, tener otro impacto a través de un .. • https://www.exploit-db.com/exploits/34004 • CWE-22: Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal') •

CVE-2010-2037 – Joomla! Component Percha Downloads Attach 1.1 - 'Controller' Traversal Arbitrary File Access
https://notcve.org/view.php?id=CVE-2010-2037
25 May 2010 — Directory traversal vulnerability in the Percha Downloads Attach (com_perchadownloadsattach) component 1.1 for Joomla! allows remote attackers to read arbitrary files and possibly have unspecified other impact via a .. (dot dot) in the controller parameter to index.php. Vulnerabilidad de salto de directorio en el componente Percha Downloads Attach (com_perchadownloadsattach) v1.1 de Joomla!. Permite a atacantes remotos leer ficheros de su elección y, posiblemente, tener otros impactos a través de un .. • https://www.exploit-db.com/exploits/34005 • CWE-22: Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal') •

CVE-2010-1977 – Joomla! Component J!WHMCS Integrator 1.5.0 - Local File Inclusion
https://notcve.org/view.php?id=CVE-2010-1977
19 May 2010 — Directory traversal vulnerability in the J!WHMCS Integrator (com_jwhmcs) component 1.5.0 for Joomla! allows remote attackers to read arbitrary files via a .. (dot dot) in the controller parameter to index.php. Vulnerabilidad de salto de directorio en el componente J! • https://www.exploit-db.com/exploits/12083 • CWE-22: Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal') •