CVE-2017-11612 โ€” Cross-site Scripting in Joomla !

Severity
6.1MEDIUMNVD
EPSS
0.1%
top 71.80%
CISA KEV
Not in KEV
Exploit
No known exploits
Affected products
Timeline
PublishedJul 26
Latest updateMay 17

Description

In Joomla! before 3.7.4, inadequate filtering of potentially malicious HTML tags leads to XSS vulnerabilities in various components.

CVSS vector

CVSS:3.0/AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:NExploitability: 2.8 | Impact: 2.7

Affected Packages1 packages

โ–ถNVDjoomla/joomla_!114 versions+113

๐Ÿ”ดVulnerability Details

2
GHSA
GHSA-v98m-c2v2-7x39: In Joomla! before 3โ†—2022-05-17
โ–ถ
CVEList
CVE-2017-11612: In Joomla! before 3โ†—2017-07-26
โ–ถ
CVE-2017-11612 โ€” Cross-site Scripting in Joomla ! | cvebase