PT-2010-3309 · Open Source Matters · Joomla!

Published

2010-06-07

·

Updated

2022-05-14

·

CVE-2010-1649

CVSS v2.0

4.3

Medium

VectorAV:N/AC:M/Au:N/C:N/I:P/A:N
Name of the Vulnerable Software and Affected Versions Joomla! versions 1.5 through 1.5.17
Description The issue allows remote attackers to inject arbitrary web script or HTML via unknown vectors related to various administrator screens, possibly the search parameter in "administrator/index.php".
Recommendations For Joomla! versions 1.5 through 1.5.17, update to a version that contains a fix for this issue.

Fix

XSS

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

CVE-2010-1649
GHSA-FJ57-VHRC-73R7

Affected Products

Joomla!