CVE-2011-4910: XSS
Published Oct 7, 2012
·Updated
Cross-site scripting (XSS) vulnerability in Joomla! before 1.5.12 allows remote attackers to inject arbitrary web script or HTML via the PATHINFO.
Affected Software
12 affected components
Joomla Joomla\!<=1.5.11
Joomla Joomla\!=1.5.3
Joomla Joomla\!=1.5.2
Joomla Joomla\!=1.5.9
Joomla Joomla\!=1.5.4
Joomla Joomla\!=1.5.10
Joomla Joomla\!=1.5.7
Joomla Joomla\!=1.5.0
Joomla Joomla\!=1.5.6
Joomla Joomla\!=1.5.1
Joomla Joomla\!=1.5.8
Joomla Joomla\!=1.5.5
Event History
Oct 7, 2012
CVE Published
via MITRE·09:00 PM
Data Sourced
via MITRE·09:00 PM
Description
Frequently Asked Questions
1
What is the severity of CVE-2011-4910?
CVE-2011-4910 is classified as a medium severity vulnerability due to its potential for exploitation through cross-site scripting.
2
How do I fix CVE-2011-4910?
To mitigate CVE-2011-4910, upgrade Joomla! to version 1.5.12 or later.
3
What type of vulnerability is CVE-2011-4910?
CVE-2011-4910 is a cross-site scripting (XSS) vulnerability.
4
Which versions of Joomla! are affected by CVE-2011-4910?
CVE-2011-4910 affects Joomla! versions prior to 1.5.12.
5
Can CVE-2011-4910 allow attackers to execute scripts?
Yes, CVE-2011-4910 allows remote attackers to inject arbitrary web scripts or HTML.