Show plain JSON{"id": "CVE-2011-2710", "cveTags": [], "metrics": {"cvssMetricV2": [{"type": "Primary", "source": "nvd@nist.gov", "cvssData": {"version": "2.0", "baseScore": 4.3, "accessVector": "NETWORK", "vectorString": "AV:N/AC:M/Au:N/C:N/I:P/A:N", "authentication": "NONE", "integrityImpact": "PARTIAL", "accessComplexity": "MEDIUM", "availabilityImpact": "NONE", "confidentialityImpact": "NONE"}, "acInsufInfo": false, "impactScore": 2.9, "baseSeverity": "MEDIUM", "obtainAllPrivilege": false, "exploitabilityScore": 8.6, "obtainUserPrivilege": false, "obtainOtherPrivilege": false, "userInteractionRequired": true}]}, "published": "2011-07-27T20:55:03.287", "references": [{"url": "http://developer.joomla.org/security/news/357-20110701-xss-vulnerability.html", "source": "secalert@redhat.com"}, {"url": "http://www.openwall.com/lists/oss-security/2011/07/22/1", "tags": ["Exploit"], "source": "secalert@redhat.com"}, {"url": "http://www.openwall.com/lists/oss-security/2011/07/22/5", "tags": ["Exploit"], "source": "secalert@redhat.com"}, {"url": "http://www.openwall.com/lists/oss-security/2011/10/16/1", "source": "secalert@redhat.com"}, {"url": "http://www.openwall.com/lists/oss-security/2011/11/21/27", "source": "secalert@redhat.com"}, {"url": "http://yehg.net/lab/pr0js/advisories/joomla/core/%5Bjoomla_1.7.0-rc%5D_cross_site_scripting%28XSS%29", "source": "secalert@redhat.com"}, {"url": "http://developer.joomla.org/security/news/357-20110701-xss-vulnerability.html", "source": "af854a3a-2127-422b-91ae-364da2661108"}, {"url": "http://www.openwall.com/lists/oss-security/2011/07/22/1", "tags": ["Exploit"], "source": "af854a3a-2127-422b-91ae-364da2661108"}, {"url": "http://www.openwall.com/lists/oss-security/2011/07/22/5", "tags": ["Exploit"], "source": "af854a3a-2127-422b-91ae-364da2661108"}, {"url": "http://www.openwall.com/lists/oss-security/2011/10/16/1", "source": "af854a3a-2127-422b-91ae-364da2661108"}, {"url": "http://www.openwall.com/lists/oss-security/2011/11/21/27", "source": "af854a3a-2127-422b-91ae-364da2661108"}, {"url": "http://yehg.net/lab/pr0js/advisories/joomla/core/%5Bjoomla_1.7.0-rc%5D_cross_site_scripting%28XSS%29", "source": "af854a3a-2127-422b-91ae-364da2661108"}], "vulnStatus": "Deferred", "weaknesses": [{"type": "Primary", "source": "nvd@nist.gov", "description": [{"lang": "en", "value": "CWE-79"}]}], "descriptions": [{"lang": "en", "value": "Multiple cross-site scripting (XSS) vulnerabilities in Joomla! before 1.7.0 allow remote attackers to inject arbitrary web script or HTML via (1) the URI to includes/application.php, reachable through index.php; and, when Internet Explorer or Konqueror is used, (2) allow remote attackers to inject arbitrary web script or HTML via the searchword parameter in a search action to index.php in the com_search component. NOTE: vector 2 exists because of an incomplete fix for CVE-2011-2509.5."}, {"lang": "es", "value": "M\u00faltiples vulnerabilidades de ejecuci\u00f3n de secuencias de comandos en sitios cruzados (XSS) en Joomla! before v1.7.0, permiten a atacantes remotos inyectar secuencias de comandos web o HTML a trav\u00e9s de(1) la URI sobre includes/application.php, accesible desde index.php; y, cuando de usa Internet Explorer o Konqueror, (2) permite a atacantes remotos inyectar secuencias de comandos web o HTML a trav\u00e9s del par\u00e1metro searchword en una acci\u00f3n search sobre index.php en el componente com_search. NOTE: El vector 2 existe debido a una resoluci\u00f3n incompleta del CVE-2011-2509.5."}], "lastModified": "2025-04-11T00:51:21.963", "configurations": [{"nodes": [{"negate": false, "cpeMatch": [{"criteria": "cpe:2.3:a:joomla:joomla\\!:*:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "EA7FCDCA-3EA3-4099-9DE3-D5B0DA49FC4A", "versionEndIncluding": "1.6.6"}, {"criteria": "cpe:2.3:a:joomla:joomla\\!:1.5.0:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "65184BFE-A070-4099-B672-3A238E9F83EF"}, {"criteria": "cpe:2.3:a:joomla:joomla\\!:1.5.1:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "920129E4-F979-49B5-9B96-62BCBC3954D5"}, {"criteria": "cpe:2.3:a:joomla:joomla\\!:1.5.2:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "1313BEAD-C0C0-4D8C-A3AA-F514BA6A1C92"}, {"criteria": "cpe:2.3:a:joomla:joomla\\!:1.5.3:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "A90A8900-E441-46C4-A725-BA312358760E"}, {"criteria": "cpe:2.3:a:joomla:joomla\\!:1.5.4:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "E74E276C-C62D-4828-89CB-80F526FEAEA5"}, {"criteria": "cpe:2.3:a:joomla:joomla\\!:1.5.5:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "F370EA7F-3719-4D35-A7FD-C7AD1BD709D5"}, {"criteria": "cpe:2.3:a:joomla:joomla\\!:1.5.6:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "E4E48636-9EDB-49BB-ABC8-D79864BFCB38"}, {"criteria": "cpe:2.3:a:joomla:joomla\\!:1.5.7:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "580712F4-E97C-4E3F-BF9D-3445BEB4C3FE"}, {"criteria": "cpe:2.3:a:joomla:joomla\\!:1.5.8:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "466E5E84-4C69-49F2-83DA-FC86202DB7F4"}, {"criteria": "cpe:2.3:a:joomla:joomla\\!:1.5.9:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "CB968DF7-4A0B-474C-8639-06976837E03D"}, {"criteria": "cpe:2.3:a:joomla:joomla\\!:1.5.10:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "1B6BE010-649F-4E48-97DC-DDF7511406D5"}, {"criteria": "cpe:2.3:a:joomla:joomla\\!:1.5.11:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "2B8C4094-D028-4A55-B523-C90F5A4C9D82"}, {"criteria": "cpe:2.3:a:joomla:joomla\\!:1.5.12:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "69FA6550-2135-4D41-B592-433FFFDEE180"}, {"criteria": "cpe:2.3:a:joomla:joomla\\!:1.5.13:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "C73D78E0-BF24-433B-9F1B-03FD956C5779"}, {"criteria": "cpe:2.3:a:joomla:joomla\\!:1.5.14:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "B9BAC75B-DAC1-47E1-B9C9-48CF19489143"}, {"criteria": "cpe:2.3:a:joomla:joomla\\!:1.5.15:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "9BA97C8A-809D-44FC-95D2-5F269B6BF77D"}, {"criteria": "cpe:2.3:a:joomla:joomla\\!:1.5.15:rc:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "A9F607CF-AC49-4B13-96E5-B44191108CDA"}, {"criteria": "cpe:2.3:a:joomla:joomla\\!:1.5.16:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "883B3DC0-6D6C-4C21-BC2A-EE53C140D817"}, {"criteria": "cpe:2.3:a:joomla:joomla\\!:1.5.17:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "B7CFCF0F-BCD9-4215-817A-1409EA00CCBA"}, {"criteria": "cpe:2.3:a:joomla:joomla\\!:1.5.18:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "0D5CB72A-9B5F-42B2-BEE1-3F92C04FB335"}, {"criteria": "cpe:2.3:a:joomla:joomla\\!:1.5.19:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "3FDBBD33-63E0-4377-95ED-45FAA1EED3E7"}, {"criteria": "cpe:2.3:a:joomla:joomla\\!:1.5.20:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "34B39FD1-44E2-43EC-B393-99E6208622B5"}, {"criteria": "cpe:2.3:a:joomla:joomla\\!:1.5.21:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "0F77BABA-7768-4F92-84C7-D247E4772749"}, {"criteria": "cpe:2.3:a:joomla:joomla\\!:1.5.22:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "487204D9-7A9F-4A44-B625-FDBE2807444A"}, {"criteria": "cpe:2.3:a:joomla:joomla\\!:1.5.23:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "1A5C8747-BF6A-4436-BC3A-A4B808AFF889"}, {"criteria": "cpe:2.3:a:joomla:joomla\\!:1.6:alpha:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "C15380EB-6543-4C95-9B7F-35DDD99D1C37"}, {"criteria": "cpe:2.3:a:joomla:joomla\\!:1.6:alpha2:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "C95EE9E1-CB59-4E8B-B57B-991295790328"}, {"criteria": "cpe:2.3:a:joomla:joomla\\!:1.6:beta1:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "605F893A-2612-4524-B24B-0468F5EE2019"}, {"criteria": "cpe:2.3:a:joomla:joomla\\!:1.6:beta10:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "21D252E2-1961-4D4F-8471-584CF6CB39E5"}, {"criteria": "cpe:2.3:a:joomla:joomla\\!:1.6:beta11:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "8B0930E8-3E98-4DF5-AED3-146D34F843D7"}, {"criteria": "cpe:2.3:a:joomla:joomla\\!:1.6:beta12:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "C732CFEF-CF4D-4EB7-A730-A5764B40A9BC"}, {"criteria": "cpe:2.3:a:joomla:joomla\\!:1.6:beta13:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "10880E1E-8478-485C-AD9C-ABE4C51D2EA7"}, {"criteria": "cpe:2.3:a:joomla:joomla\\!:1.6:beta14:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "816A10B4-EC28-47EF-BD47-7F431AB77561"}, {"criteria": "cpe:2.3:a:joomla:joomla\\!:1.6:beta15:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "F9085C7C-6CA0-4423-93B1-9E8AF6D2978E"}, {"criteria": "cpe:2.3:a:joomla:joomla\\!:1.6:beta2:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "5BCAD021-E5B2-4232-81FF-BB04908F4FE6"}, {"criteria": "cpe:2.3:a:joomla:joomla\\!:1.6:beta3:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "0B842E1A-348B-4644-930E-CF46E1E38E70"}, {"criteria": "cpe:2.3:a:joomla:joomla\\!:1.6:beta4:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "D08BB717-4841-482D-A1AD-E8DF769E57C0"}, {"criteria": "cpe:2.3:a:joomla:joomla\\!:1.6:beta5:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "065980D5-AEBA-44B1-A58D-8BF8FFF674F8"}, {"criteria": "cpe:2.3:a:joomla:joomla\\!:1.6:beta6:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "EBC711DC-C790-4558-B305-A812EE2290B9"}, {"criteria": "cpe:2.3:a:joomla:joomla\\!:1.6:beta7:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "37DE1D53-EE34-4C2C-B2AD-3DD58254C874"}, {"criteria": "cpe:2.3:a:joomla:joomla\\!:1.6:beta8:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "9E11C49B-2A3E-4D52-BEFA-CDDB751E20AD"}, {"criteria": "cpe:2.3:a:joomla:joomla\\!:1.6:beta9:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "1D6CA7BE-DD88-4899-A284-C9E4F97F4005"}, {"criteria": "cpe:2.3:a:joomla:joomla\\!:1.6:rc1:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "2C686887-75D3-4682-AE61-245D10EEAADE"}, {"criteria": "cpe:2.3:a:joomla:joomla\\!:1.6.0:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "B15F42BC-7826-493B-8C5A-D70A7263DCB0"}, {"criteria": "cpe:2.3:a:joomla:joomla\\!:1.6.1:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "AAC6CF00-2D88-4B97-A496-DCBE1B4E9A00"}, {"criteria": "cpe:2.3:a:joomla:joomla\\!:1.6.3:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "C8F920ED-9578-4913-B851-3205BE13A7FC"}, {"criteria": "cpe:2.3:a:joomla:joomla\\!:1.6.4:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "9E5F713F-F7EF-4E9B-BEB1-DDFDA0838D22"}, {"criteria": "cpe:2.3:a:joomla:joomla\\!:1.6.5:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "9774D211-08D9-4339-B2AE-42434DBAF169"}], "operator": "OR"}]}], "sourceIdentifier": "secalert@redhat.com"}