CVE-2007-4190

Vulnérabilités

CVE-2007-4190

CRLF injection vulnerability in Joomla!

MEDIUM Joomla CMS

CRLF injection vulnerability in Joomla! before 1.0.13 (aka Sunglow) allows remote attackers to inject arbitrary HTTP headers and probably conduct HTTP response splitting attacks via CRLF sequences in the url parameter. NOTE: this can be leveraged for cross-site scripting (XSS) attacks. NOTE: some of these details are obtained from third party information.

4.3 Moyenne · CVSS 2.0

AV:N/AC:M/Au:N/C:N/I:P/A:N

Score retenu : NVD

SourceSévérité d'origineCVSS
NVDMEDIUM 4.3 (v2.0)
Produit
Joomla CMS
Corrigée dans
1.0.13
Publiée
08/08/2007
Modifiée
16/06/2026
CWE
CWE-74
  • jusqu'à 1.0.13 (exclue)

Ces informations proviennent des sources ci-dessus ; CVE Oyer n'y ajoute aucune interprétation.

  1. Détectée via nvd26/09/2026 09:27 UTC