Описание
Multiple cross-site scripting (XSS) vulnerabilities in index.php in the ProofReader (com_proofreader) component 1.0 RC9 and earlier for Joomla! allow remote attackers to inject arbitrary web script or HTML via the URI, which is not properly handled in (1) 404 or (2) error pages.
Уязвимые конфигурации
Конфигурация 1Версия до 1.0 (включая)
Одновременно
cpe:2.3:a:joomla:joomla\!:*:*:*:*:*:*:*:*
Одно из
cpe:2.3:a:joomlatune:com_proofreader:*:rc9:*:*:*:*:*:*
cpe:2.3:a:joomlatune:com_proofreader:1.0:rc6:*:*:*:*:*:*
EPSS
Процентиль: 54%
0.00315
Низкий
4.3 Medium
CVSS2
Дефекты
CWE-79
Связанные уязвимости
github
почти 4 года назад
Multiple cross-site scripting (XSS) vulnerabilities in index.php in the ProofReader (com_proofreader) component 1.0 RC9 and earlier for Joomla! allow remote attackers to inject arbitrary web script or HTML via the URI, which is not properly handled in (1) 404 or (2) error pages.
EPSS
Процентиль: 54%
0.00315
Низкий
4.3 Medium
CVSS2
Дефекты
CWE-79