CVE-2009-3946
Published Nov 16, 2009
Last updated 7 years ago
Overview
- Description
- Joomla! before 1.5.15 allows remote attackers to read an extension's XML file, and thereby obtain the extension's version number, via a direct request.
- Source
- cve@mitre.org
- NVD status
- Modified
Social media
- Hype score
- Not currently trending
Risk scores
CVSS 2.0
- Type
- Primary
- Base score
- 5
- Impact score
- 2.9
- Exploitability score
- 10
- Vector string
- AV:N/AC:L/Au:N/C:P/I:N/A:N
Weaknesses
- nvd@nist.gov
- CWE-200
Configurations
[ { "nodes": [ { "negate": false, "cpeMatch": [ { "criteria": "cpe:2.3:a:joomla:joomla\\!:*:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "CF58B3CE-F953-487D-A1E9-E484A4F37E5D", "versionEndIncluding": "1.5.14" }, { "criteria": "cpe:2.3:a:joomla:joomla\\!:1.5.0:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "65184BFE-A070-4099-B672-3A238E9F83EF" }, { "criteria": "cpe:2.3:a:joomla:joomla\\!:1.5.1:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "920129E4-F979-49B5-9B96-62BCBC3954D5" }, { "criteria": "cpe:2.3:a:joomla:joomla\\!:1.5.2:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "1313BEAD-C0C0-4D8C-A3AA-F514BA6A1C92" }, { "criteria": "cpe:2.3:a:joomla:joomla\\!:1.5.3:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "A90A8900-E441-46C4-A725-BA312358760E" }, { "criteria": "cpe:2.3:a:joomla:joomla\\!:1.5.4:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "E74E276C-C62D-4828-89CB-80F526FEAEA5" }, { "criteria": "cpe:2.3:a:joomla:joomla\\!:1.5.5:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "F370EA7F-3719-4D35-A7FD-C7AD1BD709D5" }, { "criteria": "cpe:2.3:a:joomla:joomla\\!:1.5.6:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "E4E48636-9EDB-49BB-ABC8-D79864BFCB38" }, { "criteria": "cpe:2.3:a:joomla:joomla\\!:1.5.7:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "580712F4-E97C-4E3F-BF9D-3445BEB4C3FE" }, { "criteria": "cpe:2.3:a:joomla:joomla\\!:1.5.8:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "466E5E84-4C69-49F2-83DA-FC86202DB7F4" }, { "criteria": "cpe:2.3:a:joomla:joomla\\!:1.5.9:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "CB968DF7-4A0B-474C-8639-06976837E03D" }, { "criteria": "cpe:2.3:a:joomla:joomla\\!:1.5.10:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "1B6BE010-649F-4E48-97DC-DDF7511406D5" }, { "criteria": "cpe:2.3:a:joomla:joomla\\!:1.5.11:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "2B8C4094-D028-4A55-B523-C90F5A4C9D82" }, { "criteria": "cpe:2.3:a:joomla:joomla\\!:1.5.12:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "69FA6550-2135-4D41-B592-433FFFDEE180" }, { "criteria": "cpe:2.3:a:joomla:joomla\\!:1.5.13:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "C73D78E0-BF24-433B-9F1B-03FD956C5779" } ], "operator": "OR" } ] } ]