CVE-2015-7899: Medium severity joomla vulnerability
Published Oct 29, 2015
·Updated
The comcontent component in Joomla! 3.x before 3.4.5 does not properly check ACLs, which allows remote attackers to obtain sensitive information via unspecified vectors.
Affected Software
15 affected components
Joomla Joomla\!=3.2.0
Joomla Joomla\!=3.2.1
Joomla Joomla\!=3.2.2
Joomla Joomla\!=3.2.3
Joomla Joomla\!=3.2.4
Joomla Joomla\!=3.3.0
Joomla Joomla\!=3.3.1
Joomla Joomla\!=3.3.2
Joomla Joomla\!=3.3.3
Joomla Joomla\!=3.3.4
Joomla Joomla\!=3.4.0
Joomla Joomla\!=3.4.1
Joomla Joomla\!=3.4.2
Joomla Joomla\!=3.4.3
Joomla Joomla\!=3.4.4
Event History
Oct 29, 2015
CVE Published
via MITRE·08:00 PM
Data Sourced
via MITRE·08:00 PM
Description
Frequently Asked Questions
1
What is the severity of CVE-2015-7899?
CVE-2015-7899 is considered to have a medium severity level due to its potential for unauthorized information access.
2
How do I fix CVE-2015-7899?
To fix CVE-2015-7899, upgrade Joomla! to version 3.4.5 or later as it contains the necessary security fixes.
3
What versions of Joomla! are affected by CVE-2015-7899?
CVE-2015-7899 affects Joomla! versions 3.2.0 through 3.4.4.
4
What type of vulnerability is CVE-2015-7899?
CVE-2015-7899 is classified as an Access Control vulnerability that allows for unauthorized information disclosure.
5
What can attackers do with CVE-2015-7899?
Attackers exploiting CVE-2015-7899 can potentially gain access to sensitive information through improper ACL checks.