First published: Mon Feb 02 2009(Updated: )
Cross-site scripting (XSS) vulnerability in index.php in the beamospetition (com_beamospetition) 1.0.12 component for Joomla! allows remote attackers to inject arbitrary web script or HTML via the pet parameter in a sign action.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Joomla com beamospetition | =1.0.12 | |
Joomla |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2009-0378 has a medium severity level due to its potential for cross-site scripting attacks.
To fix CVE-2009-0378, update the Joomla! com_beamospetition component to the latest version available.
Users of the Joomla! com_beamospetition version 1.0.12 are vulnerable to CVE-2009-0378.
CVE-2009-0378 is a cross-site scripting (XSS) vulnerability.
Yes, CVE-2009-0378 can be exploited remotely to inject arbitrary web scripts or HTML.