CVE-2019-7741: XSS
Published Feb 12, 2019
·Updated
An issue was discovered in Joomla! before 3.9.3. Inadequate checks at the Global Configuration helpurl settings allowed stored XSS.
Affected Software
1 affected component
Joomla Joomla\!>=2.5.0<=3.9.2
Event History
Feb 12, 2019
CVE Published
via MITRE·06:00 PM
Data Sourced
via MITRE·06:00 PM
Description
Data Sourced
via NVD·06:29 PM
DescriptionSeverityWeaknessAffected Software
Frequently Asked Questions
1
What is the severity of CVE-2019-7741?
CVE-2019-7741 is rated as a medium severity vulnerability due to its potential for stored cross-site scripting (XSS) attacks.
2
How do I fix CVE-2019-7741?
To fix CVE-2019-7741, upgrade Joomla! to version 3.9.3 or later.
3
What types of attacks can CVE-2019-7741 facilitate?
CVE-2019-7741 can facilitate stored XSS attacks, allowing an attacker to inject malicious scripts into a web page.
4
Which versions of Joomla! are affected by CVE-2019-7741?
Joomla! versions prior to 3.9.3 and equal to or greater than 2.5.0 are affected by CVE-2019-7741.
5
What component of Joomla! is involved in CVE-2019-7741?
CVE-2019-7741 involves inadequate checks in the Global Configuration helpurl settings of Joomla!