Joompolitan's vulnerability profile centers on its LiveChat product, a web-based communication platform where the durable signal reflects input-handling weaknesses including SQL injection and improper input validation characteristic of web applications. Treat this as a compact vendor profile; live severity, exploitation, and exposure counts are shown alongside this summary.
The number and severity of CVEs published that impact products developed by Joompolitan over time
Signals from CVEs in this vendor scope (3 CVEs).
3 CVEs · Highest risk first
| CVE | Published | CVSS | Risk | KEV | Exploit |
|---|---|---|---|---|---|
CVE-2008-6883HIGH SQL injection vulnerability in the Live Chat (com_livechat) component 1.0 for Joomla! allows remote attackers to execute arbitrary SQL commands via the last parameter to getChatRoo | Jul 30, 2009 | 7.5 | 29 | NO | YES |
CVE-2008-6882HIGH Live Chat (com_livechat) component 1.0 for Joomla! allows remote attackers to use the xmlhttp.php script as an open HTTP proxy to hide network scanning activities or scan internal | Jul 30, 2009 | 7.5 | 28 | NO | YES |
CVE-2008-6881HIGH Multiple SQL injection vulnerabilities in the Live Chat (com_livechat) component 1.0 for Joomla! allow remote attackers to execute arbitrary SQL commands via the last parameter to | Jul 30, 2009 | 7.5 | 28 | NO | YES |
Signals from CVEs in this vendor scope (3 CVEs).
An overview of all social media posts that mention a CVE ID that affects a product developed by Joompolitan.
Media articles that mention a CVE ID that affects a product developed by Joompolitan — matched by CVE ID, not by vendor name.