Cross-site request forgery (CSRF) vulnerability in Joomla! 3.2.0 through 3.3.x and 3.4.x before 3.4.2 allows remote attackers to hijack the authentication of unspecified victims for requests that upload code via unknown vectors.
2015-07-14T16:59:04.953
2025-04-12T10:46:40.837
Deferred
CVSSv2: 6.8 (MEDIUM)
AV:N/AC:M/Au:N/C:P/I:P/A:P
8.6
6.4
Type | Vendor | Product | Version/Range | Vulnerable? |
---|---|---|---|---|
Application | joomla | joomla\! | 3.2.0 | Yes |
Application | joomla | joomla\! | 3.2.1 | Yes |
Application | joomla | joomla\! | 3.2.2 | Yes |
Application | joomla | joomla\! | 3.2.3 | Yes |
Application | joomla | joomla\! | 3.2.4 | Yes |
Application | joomla | joomla\! | 3.2.5 | Yes |
Application | joomla | joomla\! | 3.3.0 | Yes |
Application | joomla | joomla\! | 3.3.1 | Yes |
Application | joomla | joomla\! | 3.3.2 | Yes |
Application | joomla | joomla\! | 3.3.3 | Yes |
Application | joomla | joomla\! | 3.3.4 | Yes |
Application | joomla | joomla\! | 3.3.5 | Yes |
Application | joomla | joomla\! | 3.4.0 | Yes |
Application | joomla | joomla\! | 3.4.0 | Yes |
Application | joomla | joomla\! | 3.4.0 | Yes |
Application | joomla | joomla\! | 3.4.0 | Yes |
Application | joomla | joomla\! | 3.4.0 | Yes |
Application | joomla | joomla\! | 3.4.0 | Yes |
Application | joomla | joomla\! | 3.4.1 | Yes |
Application | joomla | joomla\! | 3.4.1 | Yes |
Application | joomla | joomla\! | 3.4.1 | Yes |
Application | joomla | joomla\! | 3.4.2 | Yes |