CVE-2015-5397
EUVD-2015-535314.07.2015, 16:59
Cross-site request forgery (CSRF) vulnerability in Joomla! 3.2.0 through 3.3.x and 3.4.x before 3.4.2 allows remote attackers to hijack the authentication of unspecified victims for requests that upload code via unknown vectors.
Affected Products (NVD)
| Vendor | Product | Version |
|---|---|---|
| joomla | joomla\! | 3.2.0 |
| joomla | joomla\! | 3.2.1 |
| joomla | joomla\! | 3.2.2 |
| joomla | joomla\! | 3.2.3 |
| joomla | joomla\! | 3.2.4 |
| joomla | joomla\! | 3.2.5 |
| joomla | joomla\! | 3.3.0 |
| joomla | joomla\! | 3.3.1 |
| joomla | joomla\! | 3.3.2 |
| joomla | joomla\! | 3.3.3 |
| joomla | joomla\! | 3.3.4 |
| joomla | joomla\! | 3.3.5 |
| joomla | joomla\! | 3.4.0 |
| joomla | joomla\! | 3.4.0:alpha |
| joomla | joomla\! | 3.4.0:beta1 |
| joomla | joomla\! | 3.4.0:beta2 |
| joomla | joomla\! | 3.4.0:beta3 |
| joomla | joomla\! | 3.4.0:rc1 |
| joomla | joomla\! | 3.4.1 |
| joomla | joomla\! | 3.4.1:rc1 |
| joomla | joomla\! | 3.4.1:rc2 |
| joomla | joomla\! | 3.4.2:rc1 |
𝑥
= Vulnerable software versions
Common Weakness Enumeration
References