CVE-2009-3946
Joomla! before 1.5.15 allows remote attackers to read an extension's XML file, and thereby obtain the extension's version number, via a direct request.
MEDIUM
Joomla CMS
Description
Joomla! before 1.5.15 allows remote attackers to read an extension's XML file, and thereby obtain the extension's version number, via a direct request.
Sévérité
5.0
Moyenne · CVSS 2.0
AV:N/AC:L/Au:N/C:P/I:N/A:N
Score retenu : NVD
| Source | Sévérité d'origine | CVSS |
|---|---|---|
| NVD | MEDIUM | 5.0 (v2.0) |
Produit et versions
- Produit
- Joomla CMS
- Corrigée dans
- Non précisée
- Publiée
- 16/11/2009
- Modifiée
- 16/06/2026
- CWE
- CWE-200
Versions concernées
- jusqu'à 1.5.14
- 1.5.0 – 1.5.0
- 1.5.1 – 1.5.1
- 1.5.2 – 1.5.2
- 1.5.3 – 1.5.3
- 1.5.4 – 1.5.4
- 1.5.5 – 1.5.5
- 1.5.6 – 1.5.6
- 1.5.7 – 1.5.7
- 1.5.8 – 1.5.8
- 1.5.9 – 1.5.9
- 1.5.10 – 1.5.10
3 autres
- 1.5.11 – 1.5.11
- 1.5.12 – 1.5.12
- 1.5.13 – 1.5.13
Sources
- NVD CVE-2009-3946 vu
Ces informations proviennent des sources ci-dessus ; CVE Oyer n'y ajoute aucune interprétation.
Historique
- Détectée via nvd26/09/2026 09:27 UTC