First published: Tue Feb 12 2019(Updated: )
An issue was discovered in Joomla! before 3.9.3. A combination of specific web server configurations, in connection with specific file types and browser-side MIME-type sniffing, causes an XSS attack vector.
Credit: cve@mitre.org cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Joomla | >=1.0.0<=3.9.2 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2019-7742 has been classified as a medium severity vulnerability.
To fix CVE-2019-7742, update Joomla! to version 3.9.3 or later.
CVE-2019-7742 could lead to cross-site scripting (XSS) attacks due to specific web server configurations.
CVE-2019-7742 affects Joomla! versions prior to 3.9.3.
CVE-2019-7742 is caused by browser-side MIME-type sniffing in conjunction with specific file types and web server configurations.