First published: Thu Apr 09 2009(Updated: )
Multiple cross-site request forgery (CSRF) vulnerabilities in the com_media component for Joomla! 1.5.x through 1.5.9 allow remote attackers to hijack the authentication of unspecified victims via unknown vectors.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Joomla | =1.5.5 | |
Joomla | =1.5 | |
Joomla | =1.5.7 | |
Joomla | =1.5.0-beta2 | |
Joomla | =1.5.9 | |
Joomla | =1.5.3 | |
Joomla | =1.5.2 | |
Joomla | =1.5.0-beta1 | |
Joomla | =1.5.8 | |
Joomla | =1.5.1 | |
Joomla | =1.5.4 | |
Joomla | =1.5.0-rc1 | |
Joomla | =1.5.6 | |
Joomla | =1.5.0-beta |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2009-1280 is considered a high-severity vulnerability due to its potential for authentication hijacking.
To fix CVE-2009-1280, upgrade your Joomla installation to version 1.5.10 or later.
CVE-2009-1280 affects Joomla versions 1.5.x through 1.5.9.
CVE-2009-1280 can be exploited through cross-site request forgery (CSRF) attacks.
The com_media component of Joomla is primarily associated with CVE-2009-1280.