First published: Fri Oct 16 2015(Updated: )
Cross-site request forgery (CSRF) vulnerability in eXtplorer before 2.1.8 allows remote attackers to hijack the authentication of arbitrary users for requests that execute PHP code.
Credit: vultures@jpcert.or.jp
Affected Software | Affected Version | How to fix |
---|---|---|
Joomla Explorer | <=2.1.7 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2015-5660 is considered a critical severity vulnerability due to its potential impact on user authentication.
To fix CVE-2015-5660, upgrade eXtplorer to version 2.1.8 or later.
CVE-2015-5660 allows attackers to perform cross-site request forgery (CSRF) attacks to hijack user sessions.
CVE-2015-5660 affects eXtplorer versions prior to 2.1.8.
CVE-2015-5660 is a known vulnerability that has been identified in various instances of eXtplorer.