CVE-2015-7343: XSS
Published Mar 9, 2020
·Updated
JNews Joomla Component before 8.5.0 has XSS via the mailingsearch parameter.
Affected Software
1 affected component
Joobi Jnews Joomla\!=8.3.1
Event History
Mar 9, 2020
CVE Published
via MITRE·01:39 PM
Data Sourced
via MITRE·01:39 PM
Description
Frequently Asked Questions
1
What is the severity of CVE-2015-7343?
CVE-2015-7343 is considered a moderate severity vulnerability due to the potential for cross-site scripting (XSS) attacks.
2
How do I fix CVE-2015-7343?
To fix CVE-2015-7343, upgrade the JNews Joomla Component to version 8.5.0 or later.
3
What type of vulnerability is CVE-2015-7343?
CVE-2015-7343 is a cross-site scripting (XSS) vulnerability affecting the JNews Joomla Component.
4
Which versions of JNews are affected by CVE-2015-7343?
CVE-2015-7343 affects JNews Joomla Component versions prior to 8.5.0, specifically version 8.3.1.
5
What is the impact of CVE-2015-7343 on users?
The impact of CVE-2015-7343 allows attackers to execute arbitrary JavaScript in the context of the user's session.