CVE-2010-1434

HIGH

Joomla! Core <1.5.16 - Session Fixation

Title source: llm
STIX 2.1

Description

Joomla! Core is prone to a session fixation vulnerability. An attacker may leverage this issue to hijack an arbitrary session and gain access to sensitive information, which may help in launching further attacks. Joomla! Core versions 1.5.x ranging from 1.5.0 and up to and including 1.5.15 are vulnerable.

Scores

CVSS v3 7.5
EPSS 0.0001
EPSS Percentile 0.4%
Attack Vector NETWORK
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N

Details

CWE
CWE-384
Status published
Products (1)
joomla/joomla\! 1.5.0 - 1.5.15
Published Jun 21, 2021
Tracked Since Feb 18, 2026