CVE-2009-4573: XSS
Multiple cross-site scripting (XSS) vulnerabilities in the Joomulus (modjoomulus) module 2.0 for Joomla! allow remote attackers to inject arbitrary web script or HTML via the tagcloud parameter in a tags action to (1) tagcloudell.swf, (2) tagcloudeng.swf, (3) tagcloudpor.swf, (4) tagcloudrus.swf, and possibly (5) tagcloudjpn.swf. NOTE: the provenance of this information is unknown; the details are obtained solely from third party information.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2009-4573?
CVE-2009-4573 is classified as a medium severity vulnerability due to its potential for cross-site scripting attacks.
How do I fix CVE-2009-4573?
To fix CVE-2009-4573, users should update to the latest version of the Joomulus module or apply security patches provided by the developer.
What is CVE-2009-4573?
CVE-2009-4573 is a vulnerability that allows remote attackers to inject arbitrary web scripts or HTML in the Joomulus module for Joomla! via the tagcloud parameter.
Which versions of the Joomulus module are affected by CVE-2009-4573?
CVE-2009-4573 affects version 2.0 of the Joomulus module for Joomla!.
Can CVE-2009-4573 be exploited remotely?
Yes, CVE-2009-4573 can be exploited remotely by attackers to perform cross-site scripting attacks.