Inertialfate Com If Nexus vulnerabilities
2 known vulnerabilities affecting inertialfate/com_if_nexus.
Total CVEs
2
CISA KEV
0
Public exploits
2
Exploited in wild
0
Severity breakdown
HIGH2
Vulnerabilities
Page 1 of 1
CVE-2009-4679P3HIGHCVSS 7.5PoCv1.52010-03-08
CVE-2009-4679 [HIGH] CWE-22 CVE-2009-4679: Directory traversal vulnerability in the inertialFATE iF Portfolio Nexus (com_if_nexus) component 1.
Directory traversal vulnerability in the inertialFATE iF Portfolio Nexus (com_if_nexus) component 1.5 for Joomla! allows remote attackers to include and execute arbitrary local files via a .. (dot dot) in the controller parameter to index.php.
nvd
CVE-2009-4057P3HIGHCVSS 7.5PoCv1.12009-11-24
CVE-2009-4057 [HIGH] CWE-89 CVE-2009-4057: SQL injection vulnerability in the inertialFATE iF Portfolio Nexus (com_if_nexus) component 1.1 for
SQL injection vulnerability in the inertialFATE iF Portfolio Nexus (com_if_nexus) component 1.1 for Joomla! allows remote attackers to execute arbitrary SQL commands via the id parameter in an item action to index.php.
nvd