CVE-2012-1612: XSS
Published Sep 6, 2012
·Updated
Cross-site scripting (XSS) vulnerability in the update manager in Joomla! 2.5.x before 2.5.4 allows remote attackers to inject arbitrary web script or HTML via unspecified vectors.
Affected Software
4 affected components
Joomla Joomla\!=2.5.0
Joomla Joomla\!=2.5.1
Joomla Joomla\!=2.5.2
Joomla Joomla\!=2.5.3
Event History
Sep 6, 2012
CVE Published
via MITRE·09:00 PM
Data Sourced
via MITRE·09:00 PM
Description
Frequently Asked Questions
1
What is the severity of CVE-2012-1612?
The severity of CVE-2012-1612 is considered medium, indicating a moderate risk of exploitation.
2
How do I fix CVE-2012-1612?
To fix CVE-2012-1612, you should upgrade your Joomla! installation to version 2.5.4 or later.
3
What versions of Joomla! are affected by CVE-2012-1612?
CVE-2012-1612 affects Joomla! versions 2.5.0 through 2.5.3.
4
Can CVE-2012-1612 lead to data breaches?
Yes, CVE-2012-1612 can potentially lead to data breaches via cross-site scripting attacks.
5
Is CVE-2012-1612 easy to exploit?
CVE-2012-1612 can be exploited by remote attackers using unsophisticated methods, making it a concern.