Show plain JSON{"configurations": [{"nodes": [{"cpeMatch": [{"criteria": "cpe:2.3:a:joomla:joomla\\!:*:*:*:*:*:*:*:*", "matchCriteriaId": "EA7FCDCA-3EA3-4099-9DE3-D5B0DA49FC4A", "versionEndIncluding": "1.6.6", "vulnerable": true}, {"criteria": "cpe:2.3:a:joomla:joomla\\!:1.5.0:*:*:*:*:*:*:*", "matchCriteriaId": "65184BFE-A070-4099-B672-3A238E9F83EF", "vulnerable": true}, {"criteria": "cpe:2.3:a:joomla:joomla\\!:1.5.1:*:*:*:*:*:*:*", "matchCriteriaId": "920129E4-F979-49B5-9B96-62BCBC3954D5", "vulnerable": true}, {"criteria": "cpe:2.3:a:joomla:joomla\\!:1.5.2:*:*:*:*:*:*:*", "matchCriteriaId": "1313BEAD-C0C0-4D8C-A3AA-F514BA6A1C92", "vulnerable": true}, {"criteria": "cpe:2.3:a:joomla:joomla\\!:1.5.3:*:*:*:*:*:*:*", "matchCriteriaId": "A90A8900-E441-46C4-A725-BA312358760E", "vulnerable": true}, {"criteria": "cpe:2.3:a:joomla:joomla\\!:1.5.4:*:*:*:*:*:*:*", "matchCriteriaId": "E74E276C-C62D-4828-89CB-80F526FEAEA5", "vulnerable": true}, {"criteria": "cpe:2.3:a:joomla:joomla\\!:1.5.5:*:*:*:*:*:*:*", "matchCriteriaId": "F370EA7F-3719-4D35-A7FD-C7AD1BD709D5", "vulnerable": true}, {"criteria": "cpe:2.3:a:joomla:joomla\\!:1.5.6:*:*:*:*:*:*:*", "matchCriteriaId": "E4E48636-9EDB-49BB-ABC8-D79864BFCB38", "vulnerable": true}, {"criteria": "cpe:2.3:a:joomla:joomla\\!:1.5.7:*:*:*:*:*:*:*", "matchCriteriaId": "580712F4-E97C-4E3F-BF9D-3445BEB4C3FE", "vulnerable": true}, {"criteria": "cpe:2.3:a:joomla:joomla\\!:1.5.8:*:*:*:*:*:*:*", "matchCriteriaId": "466E5E84-4C69-49F2-83DA-FC86202DB7F4", "vulnerable": true}, {"criteria": "cpe:2.3:a:joomla:joomla\\!:1.5.9:*:*:*:*:*:*:*", "matchCriteriaId": "CB968DF7-4A0B-474C-8639-06976837E03D", "vulnerable": true}, {"criteria": "cpe:2.3:a:joomla:joomla\\!:1.5.10:*:*:*:*:*:*:*", "matchCriteriaId": "1B6BE010-649F-4E48-97DC-DDF7511406D5", "vulnerable": true}, {"criteria": "cpe:2.3:a:joomla:joomla\\!:1.5.11:*:*:*:*:*:*:*", "matchCriteriaId": "2B8C4094-D028-4A55-B523-C90F5A4C9D82", "vulnerable": true}, {"criteria": "cpe:2.3:a:joomla:joomla\\!:1.5.12:*:*:*:*:*:*:*", "matchCriteriaId": "69FA6550-2135-4D41-B592-433FFFDEE180", "vulnerable": true}, {"criteria": "cpe:2.3:a:joomla:joomla\\!:1.5.13:*:*:*:*:*:*:*", "matchCriteriaId": "C73D78E0-BF24-433B-9F1B-03FD956C5779", "vulnerable": true}, {"criteria": "cpe:2.3:a:joomla:joomla\\!:1.5.14:*:*:*:*:*:*:*", "matchCriteriaId": "B9BAC75B-DAC1-47E1-B9C9-48CF19489143", "vulnerable": true}, {"criteria": "cpe:2.3:a:joomla:joomla\\!:1.5.15:*:*:*:*:*:*:*", "matchCriteriaId": "9BA97C8A-809D-44FC-95D2-5F269B6BF77D", "vulnerable": true}, {"criteria": "cpe:2.3:a:joomla:joomla\\!:1.5.15:rc:*:*:*:*:*:*", "matchCriteriaId": "A9F607CF-AC49-4B13-96E5-B44191108CDA", "vulnerable": true}, {"criteria": "cpe:2.3:a:joomla:joomla\\!:1.5.16:*:*:*:*:*:*:*", "matchCriteriaId": "883B3DC0-6D6C-4C21-BC2A-EE53C140D817", "vulnerable": true}, {"criteria": "cpe:2.3:a:joomla:joomla\\!:1.5.17:*:*:*:*:*:*:*", "matchCriteriaId": "B7CFCF0F-BCD9-4215-817A-1409EA00CCBA", "vulnerable": true}, {"criteria": "cpe:2.3:a:joomla:joomla\\!:1.5.18:*:*:*:*:*:*:*", "matchCriteriaId": "0D5CB72A-9B5F-42B2-BEE1-3F92C04FB335", "vulnerable": true}, {"criteria": "cpe:2.3:a:joomla:joomla\\!:1.5.19:*:*:*:*:*:*:*", "matchCriteriaId": "3FDBBD33-63E0-4377-95ED-45FAA1EED3E7", "vulnerable": true}, {"criteria": "cpe:2.3:a:joomla:joomla\\!:1.5.20:*:*:*:*:*:*:*", "matchCriteriaId": "34B39FD1-44E2-43EC-B393-99E6208622B5", "vulnerable": true}, {"criteria": "cpe:2.3:a:joomla:joomla\\!:1.5.21:*:*:*:*:*:*:*", "matchCriteriaId": "0F77BABA-7768-4F92-84C7-D247E4772749", "vulnerable": true}, {"criteria": "cpe:2.3:a:joomla:joomla\\!:1.5.22:*:*:*:*:*:*:*", "matchCriteriaId": "487204D9-7A9F-4A44-B625-FDBE2807444A", "vulnerable": true}, {"criteria": "cpe:2.3:a:joomla:joomla\\!:1.5.23:*:*:*:*:*:*:*", "matchCriteriaId": "1A5C8747-BF6A-4436-BC3A-A4B808AFF889", "vulnerable": true}, {"criteria": "cpe:2.3:a:joomla:joomla\\!:1.6:alpha:*:*:*:*:*:*", "matchCriteriaId": "C15380EB-6543-4C95-9B7F-35DDD99D1C37", "vulnerable": true}, {"criteria": "cpe:2.3:a:joomla:joomla\\!:1.6:alpha2:*:*:*:*:*:*", "matchCriteriaId": "C95EE9E1-CB59-4E8B-B57B-991295790328", "vulnerable": true}, {"criteria": "cpe:2.3:a:joomla:joomla\\!:1.6:beta1:*:*:*:*:*:*", "matchCriteriaId": "605F893A-2612-4524-B24B-0468F5EE2019", "vulnerable": true}, {"criteria": "cpe:2.3:a:joomla:joomla\\!:1.6:beta10:*:*:*:*:*:*", "matchCriteriaId": "21D252E2-1961-4D4F-8471-584CF6CB39E5", "vulnerable": true}, {"criteria": "cpe:2.3:a:joomla:joomla\\!:1.6:beta11:*:*:*:*:*:*", "matchCriteriaId": "8B0930E8-3E98-4DF5-AED3-146D34F843D7", "vulnerable": true}, {"criteria": "cpe:2.3:a:joomla:joomla\\!:1.6:beta12:*:*:*:*:*:*", "matchCriteriaId": "C732CFEF-CF4D-4EB7-A730-A5764B40A9BC", "vulnerable": true}, {"criteria": "cpe:2.3:a:joomla:joomla\\!:1.6:beta13:*:*:*:*:*:*", "matchCriteriaId": "10880E1E-8478-485C-AD9C-ABE4C51D2EA7", "vulnerable": true}, {"criteria": "cpe:2.3:a:joomla:joomla\\!:1.6:beta14:*:*:*:*:*:*", "matchCriteriaId": "816A10B4-EC28-47EF-BD47-7F431AB77561", "vulnerable": true}, {"criteria": "cpe:2.3:a:joomla:joomla\\!:1.6:beta15:*:*:*:*:*:*", "matchCriteriaId": "F9085C7C-6CA0-4423-93B1-9E8AF6D2978E", "vulnerable": true}, {"criteria": "cpe:2.3:a:joomla:joomla\\!:1.6:beta2:*:*:*:*:*:*", "matchCriteriaId": "5BCAD021-E5B2-4232-81FF-BB04908F4FE6", "vulnerable": true}, {"criteria": "cpe:2.3:a:joomla:joomla\\!:1.6:beta3:*:*:*:*:*:*", "matchCriteriaId": "0B842E1A-348B-4644-930E-CF46E1E38E70", "vulnerable": true}, {"criteria": "cpe:2.3:a:joomla:joomla\\!:1.6:beta4:*:*:*:*:*:*", "matchCriteriaId": "D08BB717-4841-482D-A1AD-E8DF769E57C0", "vulnerable": true}, {"criteria": "cpe:2.3:a:joomla:joomla\\!:1.6:beta5:*:*:*:*:*:*", "matchCriteriaId": "065980D5-AEBA-44B1-A58D-8BF8FFF674F8", "vulnerable": true}, {"criteria": "cpe:2.3:a:joomla:joomla\\!:1.6:beta6:*:*:*:*:*:*", "matchCriteriaId": "EBC711DC-C790-4558-B305-A812EE2290B9", "vulnerable": true}, {"criteria": "cpe:2.3:a:joomla:joomla\\!:1.6:beta7:*:*:*:*:*:*", "matchCriteriaId": "37DE1D53-EE34-4C2C-B2AD-3DD58254C874", "vulnerable": true}, {"criteria": "cpe:2.3:a:joomla:joomla\\!:1.6:beta8:*:*:*:*:*:*", "matchCriteriaId": "9E11C49B-2A3E-4D52-BEFA-CDDB751E20AD", "vulnerable": true}, {"criteria": "cpe:2.3:a:joomla:joomla\\!:1.6:beta9:*:*:*:*:*:*", "matchCriteriaId": "1D6CA7BE-DD88-4899-A284-C9E4F97F4005", "vulnerable": true}, {"criteria": "cpe:2.3:a:joomla:joomla\\!:1.6:rc1:*:*:*:*:*:*", "matchCriteriaId": "2C686887-75D3-4682-AE61-245D10EEAADE", "vulnerable": true}, {"criteria": "cpe:2.3:a:joomla:joomla\\!:1.6.0:*:*:*:*:*:*:*", "matchCriteriaId": "B15F42BC-7826-493B-8C5A-D70A7263DCB0", "vulnerable": true}, {"criteria": "cpe:2.3:a:joomla:joomla\\!:1.6.1:*:*:*:*:*:*:*", "matchCriteriaId": "AAC6CF00-2D88-4B97-A496-DCBE1B4E9A00", "vulnerable": true}, {"criteria": "cpe:2.3:a:joomla:joomla\\!:1.6.3:*:*:*:*:*:*:*", "matchCriteriaId": "C8F920ED-9578-4913-B851-3205BE13A7FC", "vulnerable": true}, {"criteria": "cpe:2.3:a:joomla:joomla\\!:1.6.4:*:*:*:*:*:*:*", "matchCriteriaId": "9E5F713F-F7EF-4E9B-BEB1-DDFDA0838D22", "vulnerable": true}, {"criteria": "cpe:2.3:a:joomla:joomla\\!:1.6.5:*:*:*:*:*:*:*", "matchCriteriaId": "9774D211-08D9-4339-B2AE-42434DBAF169", "vulnerable": true}], "negate": false, "operator": "OR"}]}], "cveTags": [], "descriptions": [{"lang": "en", "value": "Multiple cross-site scripting (XSS) vulnerabilities in Joomla! before 1.7.0 allow remote attackers to inject arbitrary web script or HTML via (1) the URI to includes/application.php, reachable through index.php; and, when Internet Explorer or Konqueror is used, (2) allow remote attackers to inject arbitrary web script or HTML via the searchword parameter in a search action to index.php in the com_search component. NOTE: vector 2 exists because of an incomplete fix for CVE-2011-2509.5."}, {"lang": "es", "value": "M\u00faltiples vulnerabilidades de ejecuci\u00f3n de secuencias de comandos en sitios cruzados (XSS) en Joomla! before v1.7.0, permiten a atacantes remotos inyectar secuencias de comandos web o HTML a trav\u00e9s de(1) la URI sobre includes/application.php, accesible desde index.php; y, cuando de usa Internet Explorer o Konqueror, (2) permite a atacantes remotos inyectar secuencias de comandos web o HTML a trav\u00e9s del par\u00e1metro searchword en una acci\u00f3n search sobre index.php en el componente com_search. NOTE: El vector 2 existe debido a una resoluci\u00f3n incompleta del CVE-2011-2509.5."}], "id": "CVE-2011-2710", "lastModified": "2025-04-11T00:51:21.963", "metrics": {"cvssMetricV2": [{"acInsufInfo": false, "baseSeverity": "MEDIUM", "cvssData": {"accessComplexity": "MEDIUM", "accessVector": "NETWORK", "authentication": "NONE", "availabilityImpact": "NONE", "baseScore": 4.3, "confidentialityImpact": "NONE", "integrityImpact": "PARTIAL", "vectorString": "AV:N/AC:M/Au:N/C:N/I:P/A:N", "version": "2.0"}, "exploitabilityScore": 8.6, "impactScore": 2.9, "obtainAllPrivilege": false, "obtainOtherPrivilege": false, "obtainUserPrivilege": false, "source": "nvd@nist.gov", "type": "Primary", "userInteractionRequired": true}]}, "published": "2011-07-27T20:55:03.287", "references": [{"source": "secalert@redhat.com", "url": "http://developer.joomla.org/security/news/357-20110701-xss-vulnerability.html"}, {"source": "secalert@redhat.com", "tags": ["Exploit"], "url": "http://www.openwall.com/lists/oss-security/2011/07/22/1"}, {"source": "secalert@redhat.com", "tags": ["Exploit"], "url": "http://www.openwall.com/lists/oss-security/2011/07/22/5"}, {"source": "secalert@redhat.com", "url": "http://www.openwall.com/lists/oss-security/2011/10/16/1"}, {"source": "secalert@redhat.com", "url": "http://www.openwall.com/lists/oss-security/2011/11/21/27"}, {"source": "secalert@redhat.com", "url": "http://yehg.net/lab/pr0js/advisories/joomla/core/%5Bjoomla_1.7.0-rc%5D_cross_site_scripting%28XSS%29"}, {"source": "af854a3a-2127-422b-91ae-364da2661108", "url": "http://developer.joomla.org/security/news/357-20110701-xss-vulnerability.html"}, {"source": "af854a3a-2127-422b-91ae-364da2661108", "tags": ["Exploit"], "url": "http://www.openwall.com/lists/oss-security/2011/07/22/1"}, {"source": "af854a3a-2127-422b-91ae-364da2661108", "tags": ["Exploit"], "url": "http://www.openwall.com/lists/oss-security/2011/07/22/5"}, {"source": "af854a3a-2127-422b-91ae-364da2661108", "url": "http://www.openwall.com/lists/oss-security/2011/10/16/1"}, {"source": "af854a3a-2127-422b-91ae-364da2661108", "url": "http://www.openwall.com/lists/oss-security/2011/11/21/27"}, {"source": "af854a3a-2127-422b-91ae-364da2661108", "url": "http://yehg.net/lab/pr0js/advisories/joomla/core/%5Bjoomla_1.7.0-rc%5D_cross_site_scripting%28XSS%29"}], "sourceIdentifier": "secalert@redhat.com", "vulnStatus": "Deferred", "weaknesses": [{"description": [{"lang": "en", "value": "CWE-79"}], "source": "nvd@nist.gov", "type": "Primary"}]}