CVE-2015-7715: CSRF
Cross-site request forgery (CSRF) vulnerability in the Realtyna RPL (comrpl) component before 8.9.5 for Joomla! allows remote attackers to hijack the authentication of administrators for requests that add a user via an adduser action to administrator/index.php.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2015-7715?
CVE-2015-7715 is classified as a moderate severity vulnerability due to its potential impact on administrative account security.
How do I fix CVE-2015-7715?
To fix CVE-2015-7715, upgrade the Realtyna RPL component to version 8.9.5 or later.
What type of vulnerability is CVE-2015-7715?
CVE-2015-7715 is a cross-site request forgery (CSRF) vulnerability.
Who is affected by CVE-2015-7715?
Administrators using versions of the Realtyna RPL component prior to 8.9.5 on Joomla! are affected by CVE-2015-7715.
What actions can attackers perform due to CVE-2015-7715?
Attackers can hijack the authentication of Joomla! administrators to execute unauthorized actions, such as adding users.