CVE-2015-4072
Multiple cross-site scripting (XSS) vulnerabilities in the Helpdesk Pro plugin before 1.4.0 for Joomla!
MEDIUM
helpdesk_pro
Description
Multiple cross-site scripting (XSS) vulnerabilities in the Helpdesk Pro plugin before 1.4.0 for Joomla! allow remote attackers to inject arbitrary web script or HTML via vectors related to name and message.
Sévérité
5.4
Moyenne · CVSS 3.0
CVSS:3.0/AV:N/AC:L/PR:L/UI:R/S:C/C:L/I:L/A:N
Score retenu : NVD
| Source | Sévérité d'origine | CVSS |
|---|---|---|
| NVD | MEDIUM | 5.4 (v3.0) |
Produit et versions
- Produit
- helpdesk_pro
- Corrigée dans
- Non précisée
- Publiée
- 20/09/2017
- Modifiée
- 17/06/2026
- CWE
- CWE-79
Versions concernées
- helpdesk_pro — jusqu'à 1.3.0
Sources
- NVD CVE-2015-4072 vu
Ces informations proviennent des sources ci-dessus ; CVE Oyer n'y ajoute aucune interprétation.
Historique
- Détectée via nvd26/09/2026 09:34 UTC