CVE-2011-2891
Joomla! 1.6.x before 1.6.2 allows remote attackers to obtain sensitive information via an empty Itemid array parameter to index.php, which reveals the installa…
MEDIUM
Joomla CMS
Description
Joomla! 1.6.x before 1.6.2 allows remote attackers to obtain sensitive information via an empty Itemid array parameter to index.php, which reveals the installation path in an error message, a different vulnerability than CVE-2011-2488.
Sévérité
5.0
Moyenne · CVSS 2.0
AV:N/AC:L/Au:N/C:P/I:N/A:N
Score retenu : NVD
| Source | Sévérité d'origine | CVSS |
|---|---|---|
| NVD | MEDIUM | 5.0 (v2.0) |
Produit et versions
- Produit
- Joomla CMS
- Corrigée dans
- Non précisée
- Publiée
- 27/07/2011
- Modifiée
- 16/06/2026
- CWE
- CWE-200
Versions concernées
- 1.6 – 1.6
- 1.6.0 – 1.6.0
- 1.6.1 – 1.6.1
Sources
- NVD CVE-2011-2891 vu
Ces informations proviennent des sources ci-dessus ; CVE Oyer n'y ajoute aucune interprétation.
Historique
- Détectée via nvd26/09/2026 09:34 UTC