CVE-2010-1649
Joomla! < 1.5.18 - XSS
Title source: ruleDescription
Multiple cross-site scripting (XSS) vulnerabilities in the back end in Joomla! 1.5 through 1.5.17 allow remote attackers to inject arbitrary web script or HTML via unknown vectors related to "various administrator screens," possibly the search parameter in administrator/index.php.
References (4)
Scores
EPSS
0.0003
EPSS Percentile
8.7%
Classification
CWE
CWE-79
Status
draft
Affected Products (19)
joomla/joomla\!
joomla/joomla\!
joomla/joomla\!
joomla/joomla\!
joomla/joomla\!
joomla/joomla\!
joomla/joomla\!
joomla/joomla\!
joomla/joomla\!
joomla/joomla\!
joomla/joomla\!
joomla/joomla\!
joomla/joomla\!
joomla/joomla\!
joomla/joomla\!
... and 4 more
Timeline
Published
Jun 08, 2010
Tracked Since
Feb 18, 2026