CVE-2009-1279

Joomla - XSS

Title source: rule

Description

Multiple cross-site scripting (XSS) vulnerabilities in Joomla! 1.5 through 1.5.9 allow remote attackers to inject arbitrary web script or HTML via unspecified vectors to the (1) com_admin component, (2) com_search component when "Gather Search Statistics" is enabled, and (3) the category view in the com_content component.

Scores

EPSS 0.0001
EPSS Percentile 1.3%

Classification

CWE
CWE-79
Status published

Affected Products (15)

joomla/joomla
joomla/joomla
joomla/joomla
joomla/joomla
joomla/joomla
joomla/joomla
joomla/joomla
joomla/joomla
joomla/joomla
joomla/joomla
joomla/joomla
joomla/joomla
joomla/joomla
joomla/joomla
n/a/n/a

Timeline

Published Apr 09, 2009
Tracked Since Feb 18, 2026