CVE-2013-1453

Vulnérabilités

CVE-2013-1453

plugins/system/highlight/highlight.php in Joomla!

HIGH Joomla CMS

plugins/system/highlight/highlight.php in Joomla! 3.0.x through 3.0.2 and 2.5.x through 2.5.8 allows attackers to unserialize arbitrary PHP objects to obtain sensitive information, delete arbitrary directories, conduct SQL injection attacks, and possibly have other impacts via the highlight parameter. Note: it was originally reported that this issue only allowed attackers to obtain sensitive information, but later analysis demonstrated that other attacks exist.

7.5 Élevée · CVSS 2.0

AV:N/AC:L/Au:N/C:P/I:P/A:P

Score retenu : NVD

SourceSévérité d'origineCVSS
NVDHIGH 7.5 (v2.0)
Produit
Joomla CMS
Corrigée dans
Non précisée
Publiée
13/02/2013
Modifiée
16/06/2026
  • 2.5.0 – 2.5.0
  • 2.5.1 – 2.5.1
  • 2.5.2 – 2.5.2
  • 2.5.3 – 2.5.3
  • 2.5.4 – 2.5.4
  • 2.5.5 – 2.5.5
  • 2.5.6 – 2.5.6
  • 2.5.7 – 2.5.7
  • 2.5.8 – 2.5.8
  • 3.0.0 – 3.0.0
  • 3.0.1 – 3.0.1
  • 3.0.2 – 3.0.2

Ces informations proviennent des sources ci-dessus ; CVE Oyer n'y ajoute aucune interprétation.

  1. Détectée via nvd26/09/2026 09:34 UTC