CVE-2009-4233
Joomla! mod_yj_whois - XSS
Title source: llmDescription
Cross-site scripting (XSS) vulnerability in modules/mod_yj_whois.php in the YJ Whois component 1.0x and 1.5.x for Joomla! allows remote attackers to inject arbitrary web script or HTML via the domain parameter to index.php. NOTE: some of these details are obtained from third party information.
Scores
EPSS
0.0030
EPSS Percentile
52.7%
Classification
CWE
CWE-79
Status
published
Affected Products (3)
youjoomla/yj_whois
youjoomla/yj_whois
n/a/n/a
Timeline
Published
Dec 08, 2009
Tracked Since
Feb 18, 2026