CVE-2019-6261: XSS
Published Jan 16, 2019
·Updated
An issue was discovered in Joomla! before 3.9.2. Inadequate escaping in comcontact leads to a stored XSS vulnerability.
Affected Software
1 affected component
Joomla Joomla\!>=2.5.0<3.9.2
Event History
Jan 16, 2019
CVE Published
via MITRE·07:00 AM
Data Sourced
via MITRE·07:00 AM
Description
Data Sourced
via NVD·08:29 AM
DescriptionSeverityWeaknessAffected Software
Frequently Asked Questions
1
What is the severity of CVE-2019-6261?
CVE-2019-6261 has a medium severity rating due to the potential for stored XSS attacks.
2
How do I fix CVE-2019-6261?
To fix CVE-2019-6261, upgrade Joomla! to version 3.9.2 or later.
3
What type of vulnerability is CVE-2019-6261?
CVE-2019-6261 is a stored cross-site scripting (XSS) vulnerability found in Joomla!'s com_contact component.
4
What versions of Joomla! are affected by CVE-2019-6261?
CVE-2019-6261 affects Joomla! versions prior to 3.9.2, including 2.5.0 and later.
5
What component of Joomla! is vulnerable in CVE-2019-6261?
The vulnerable component in CVE-2019-6261 is the com_contact extension.