CVE-2024-27185: [20240802] - Core - Cache Poisoning in Pagination
Published Aug 20, 2024
·Updated
The pagination class includes arbitrary parameters in links, leading to cache poisoning attack vectors.
Affected Software
3 affected components
Joomla Joomla\!>=3.0.0<3.10.17
Joomla Joomla\!>=4.0.0<4.4.7
Joomla Joomla\!>=5.0.0<5.1.3
Event History
Aug 20, 2024
CVE Published
via MITRE·04:03 PM
Data Sourced
via MITRE·04:03 PM
Description
Data Sourced
via NVD·04:15 PM
DescriptionSeverityWeaknessAffected Software
Frequently Asked Questions
1
What is the severity of CVE-2024-27185?
The severity of CVE-2024-27185 is considered high due to its potential for cache poisoning attacks.
2
How do I fix CVE-2024-27185?
To fix CVE-2024-27185, update your Joomla installation to a version that addresses this vulnerability.
3
What versions of Joomla are affected by CVE-2024-27185?
CVE-2024-27185 affects Joomla versions from 3.0.0 to 3.10.17 and 4.0.0 to 4.4.7, as well as 5.0.0 to 5.1.3.
4
What is the impact of CVE-2024-27185?
The impact of CVE-2024-27185 includes the potential for attackers to exploit arbitrary parameters to execute cache poisoning attacks.
5
Is CVE-2024-27185 easy to exploit?
Yes, CVE-2024-27185 is relatively easy to exploit if appropriate security measures are not in place.