CVE-2017-7987

Vulnérabilités

CVE-2017-7987

In Joomla! 3.2.0 through 3.6.5 (fixed in 3.7.0), inadequate escaping of file and folder names leads to XSS vulnerabilities in the template manager component.

MEDIUM Joomla CMS

In Joomla! 3.2.0 through 3.6.5 (fixed in 3.7.0), inadequate escaping of file and folder names leads to XSS vulnerabilities in the template manager component.

6.1 Moyenne · CVSS 3.0

CVSS:3.0/AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N

Score retenu : NVD

SourceSévérité d'origineCVSS
NVDMEDIUM 6.1 (v3.0)
Produit
Joomla CMS
Corrigée dans
Non précisée
Publiée
25/04/2017
Modifiée
17/06/2026
CWE
CWE-79
  • 3.2.0 – 3.2.0
  • 3.2.1 – 3.2.1
  • 3.2.2 – 3.2.2
  • 3.2.3 – 3.2.3
  • 3.2.4 – 3.2.4
  • 3.3.0 – 3.3.0
  • 3.3.1 – 3.3.1
  • 3.3.2 – 3.3.2
  • 3.3.3 – 3.3.3
  • 3.3.4 – 3.3.4
  • 3.3.5 – 3.3.5
  • 3.4.0 – 3.4.0
16 autres
  • 3.4.1 – 3.4.1
  • 3.4.2 – 3.4.2
  • 3.4.3 – 3.4.3
  • 3.4.4 – 3.4.4
  • 3.4.5 – 3.4.5
  • 3.4.6 – 3.4.6
  • 3.4.7 – 3.4.7
  • 3.4.8 – 3.4.8
  • 3.5.0 – 3.5.0
  • 3.5.1 – 3.5.1
  • 3.6.0 – 3.6.0
  • 3.6.1 – 3.6.1
  • 3.6.2 – 3.6.2
  • 3.6.3 – 3.6.3
  • 3.6.4 – 3.6.4
  • 3.6.5 – 3.6.5

Ces informations proviennent des sources ci-dessus ; CVE Oyer n'y ajoute aucune interprétation.

  1. Détectée via nvd26/09/2026 09:34 UTC