First published: Wed Jan 06 2010(Updated: )
Cross-site scripting (XSS) vulnerability in the Artist avenue (com_artistavenue) component for Joomla! and Mambo allows remote attackers to inject arbitrary web script or HTML via the Itemid parameter to index.php.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Joomla com artistavenue | ||
Joomla | ||
Mambo |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2009-4579 is classified as a cross-site scripting (XSS) vulnerability that can lead to security breaches if exploited.
To fix CVE-2009-4579, update the Artist avenue component for Joomla! and Mambo to the latest version that addresses this vulnerability.
CVE-2009-4579 affects specific versions of the Artist avenue component for Joomla! and Mambo but does not affect the core Joomla! or Mambo applications.
Yes, CVE-2009-4579 can be exploited remotely by an attacker using crafted input to the Itemid parameter.
To mitigate the risk of CVE-2009-4579, sanitize user inputs and implement proper output encoding in your web applications.