CVE-2011-2488: Infoleak
Published Jul 27, 2011
·Updated
Joomla! before 1.5.23 does not properly check for errors, which allows remote attackers to obtain sensitive information via unspecified vectors.
Affected Software
24 affected components
Joomla Joomla\!<=1.5.22
Joomla Joomla\!=1.5.11
Joomla Joomla\!=1.5.13
Joomla Joomla\!=1.5.3
Joomla Joomla\!=1.5.2
Joomla Joomla\!=1.5.9
Joomla Joomla\!=1.5.18
Joomla Joomla\!=1.5.16
Joomla Joomla\!=1.5.4
Joomla Joomla\!=1.5.10
Joomla Joomla\!=1.5.7
Joomla Joomla\!=1.5.0
Joomla Joomla\!=1.5.15
Joomla Joomla\!=1.5.6
Joomla Joomla\!=1.5.1
Joomla Joomla\!=1.5.17
Joomla Joomla\!=1.5.8
Joomla Joomla\!=1.5.19
Joomla Joomla\!=1.5.21
Joomla Joomla\!=1.5.12
Joomla Joomla\!=1.5.5
Joomla Joomla\!=1.5.20
Joomla Joomla\!=1.5.15-rc
Joomla Joomla\!=1.5.14
Remediation
Patch Available
Patch Available
Event History
Jul 27, 2011
CVE Published
via MITRE·08:00 PM
Data Sourced
via MITRE·08:00 PM
Description
Frequently Asked Questions
1
What is the severity of CVE-2011-2488?
CVE-2011-2488 is considered a medium severity vulnerability due to its potential to disclose sensitive information.
2
How do I fix CVE-2011-2488?
To fix CVE-2011-2488, upgrade your Joomla! installation to version 1.5.23 or later.
3
What versions of Joomla! are affected by CVE-2011-2488?
CVE-2011-2488 affects all Joomla! versions prior to 1.5.23.
4
Can CVE-2011-2488 be exploited remotely?
Yes, CVE-2011-2488 can be exploited remotely by attackers to gain access to sensitive information.
5
What type of information can be disclosed due to CVE-2011-2488?
CVE-2011-2488 may allow attackers to obtain sensitive information, although the specific vectors are not detailed.