CVE-2009-1938
Joomla! <1.5.11 - XSS
Title source: llmDescription
Cross-site scripting (XSS) vulnerability in Joomla! 1.5.x through 1.5.10 allows remote attackers to inject arbitrary web script or HTML via unspecified vectors related to database output and the frontend administrative panel.
Exploits (1)
exploitdb
WORKING POC
VERIFIED
by Airton Torres · textwebappsphp
https://www.exploit-db.com/exploits/33022
References (7)
Scores
EPSS
0.0012
EPSS Percentile
30.9%
Classification
CWE
CWE-79
Status
published
Affected Products (19)
joomla/joomla
joomla/joomla
joomla/joomla
joomla/joomla
joomla/joomla
joomla/joomla
joomla/joomla
joomla/joomla
joomla/joomla
joomla/joomla
joomla/joomla
joomla/joomla
joomla/joomla
joomla/joomla
joomla/joomla
... and 4 more
Timeline
Published
Jun 05, 2009
Tracked Since
Feb 18, 2026