First published: Mon Sep 10 2007(Updated: )
Joomla! 1.5 before RC2 (aka Endeleo) allows remote attackers to obtain sensitive information (the full path) via unspecified vectors, probably involving direct requests to certain PHP scripts in tmpl/ directories.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Joomla | =1.5.0_beta | |
Joomla | =1.5.0_beta2 | |
Joomla | =1.5.0_rc1 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2007-4780 is considered a moderate severity vulnerability due to the potential exposure of sensitive information.
To fix CVE-2007-4780, upgrade to Joomla! version 1.5.0 RC2 or later.
CVE-2007-4780 affects Joomla! versions 1.5.0_beta, 1.5.0_beta2, and 1.5.0_rc1.
CVE-2007-4780 is a vulnerability that allows remote attackers to obtain sensitive information.
CVE-2007-4780 can expose the full path of the Joomla! installation.