CVE-2008-6299
Multiple cross-site scripting (XSS) vulnerabilities in Joomla!
LOW
Joomla CMS
Description
Multiple cross-site scripting (XSS) vulnerabilities in Joomla! 1.5.7 and earlier allow remote authenticated users with certain privileges to inject arbitrary web script or HTML via (1) the title and description parameters to the com_weblinks module and (2) unspecified vectors in the com_content module related to "article submission."
Sévérité
3.5
Faible · CVSS 2.0
AV:N/AC:M/Au:S/C:N/I:P/A:N
Score retenu : NVD
| Source | Sévérité d'origine | CVSS |
|---|---|---|
| NVD | LOW | 3.5 (v2.0) |
Produit et versions
- Produit
- Joomla CMS
- Corrigée dans
- Non précisée
- Publiée
- 26/02/2009
- Modifiée
- 16/06/2026
- CWE
- CWE-79
Versions concernées
- jusqu'à 1.5.7
- 1.0 – 1.0
- 1.0.0 – 1.0.0
- 1.0.1 – 1.0.1
- 1.0.2 – 1.0.2
- 1.0.3 – 1.0.3
- 1.0.4 – 1.0.4
- 1.0.5 – 1.0.5
- 1.0.6 – 1.0.6
- 1.0.7 – 1.0.7
- 1.0.8 – 1.0.8
- 1.0.9 – 1.0.9
20 autres
- 1.0.10 – 1.0.10
- 1.0.11 – 1.0.11
- 1.0.12 – 1.0.12
- 1.0.13 – 1.0.13
- 1.0.14 – 1.0.14
- 1.03 – 1.03
- 1.5 – 1.5
- 1.5.0 – 1.5.0
- 1.5.0_beta – 1.5.0_beta
- 1.5.0_beta1 – 1.5.0_beta1
- 1.5.0_beta2 – 1.5.0_beta2
- 1.5.0_rc1 – 1.5.0_rc1
- 1.5.1 – 1.5.1
- 1.5.2 – 1.5.2
- 1.5.3 – 1.5.3
- 1.5.4 – 1.5.4
- 1.5.5 – 1.5.5
- 1.5.6 – 1.5.6
- 1.5rc3 – 1.5rc3
- 1.5rc4 – 1.5rc4
Sources
- NVD CVE-2008-6299 vu
Ces informations proviennent des sources ci-dessus ; CVE Oyer n'y ajoute aucune interprétation.
Historique
- Détectée via nvd26/09/2026 09:27 UTC