Description
Joomla Extension - balbooa.com - Various CSRF vectors in the admin interface in Gridbox < 2.20.2
Published: 2026-07-29
Score: 7.3 High
EPSS: < 1% Very Low
KEV: No
Impact: n/a
Action: n/a
AI Analysis

Impact

The Gridbox extension for Joomla, developed by balbooa.com, has been identified as containing multiple CSRF vectors (CWE‑352) in its administrative interface for all releases prior to version 2.20.2. This weakness permits the forging of authenticated requests, allowing an attacker to cause the administrator to perform actions that the extension’s interface permits. The flaw does not specify which actions can be performed, but it undermines the integrity of administrative operations in the extension.

Affected Systems

Any Joomla installation that includes the balbooa.com Gridbox extension with a version earlier than 2.20.2 is potentially vulnerable. Sites that have upgraded to Gridbox 2.20.2 or newer are not affected.

Risk and Exploitability

The CVSS score of 7.3 indicates a high level of severity, whereas the EPSS score of less than 1% suggests that exploitation is currently unlikely. The vulnerability is not listed in the CISA KEV catalog. Based on the description, it is inferred that the attacker can trigger forged requests by coaxing a logged‑in administrator or a user with an active admin session to visit a malicious URL or submit a forged form. Successful exploitation would enable the attacker to execute any administrative function that the authenticated user is authorized to perform, potentially compromising data integrity and other administrative controls.

Generated by OpenCVE AI on August 4, 2026 at 23:13 UTC.

Remediation

No vendor fix or workaround currently provided.

OpenCVE Recommended Actions

  • Upgrade the Gridbox extension to version 2.20.2 or newer
  • Restrict administrative access to trusted IP addresses or enforce a firewall allowlist
  • Enable multi‑factor authentication for all Joomla administrator accounts

Generated by OpenCVE AI on August 4, 2026 at 23:13 UTC.

Tracking

Sign in to view the affected projects.

Advisories

No advisories yet.

History

Thu, 30 Jul 2026 18:30:00 +0000

Type Values Removed Values Added
Metrics cvssV3_1

{'score': 7.3, 'vector': 'CVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:U/C:H/I:H/A:N'}

ssvc

{'options': {'Automatable': 'no', 'Exploitation': 'none', 'Technical Impact': 'total'}, 'version': '2.0.3'}


Wed, 29 Jul 2026 16:00:00 +0000

Type Values Removed Values Added
First Time appeared Balbooa.com
Balbooa.com gridbox Extension For Joomla
Vendors & Products Balbooa.com
Balbooa.com gridbox Extension For Joomla

Wed, 29 Jul 2026 14:45:00 +0000

Type Values Removed Values Added
Description Joomla Extension - balbooa.com - Various CSRF vectors in the admin interface in Gridbox < 2.20.2
Title Joomla Extension - balbooa.com - Various CSRF vectors in the admin interface in Gridbox < 2.20.2
Weaknesses CWE-352
References

Subscriptions

Balbooa Gridbox
Balbooa.com Gridbox Extension For Joomla
cve-icon MITRE

Status: PUBLISHED

Assigner: Joomla

Published:

Updated: 2026-08-12T13:59:10.330Z

Reserved: 2026-07-23T17:02:52.158Z

Link: CVE-2026-65947

cve-icon Vulnrichment

Updated: 2026-07-30T17:33:59.596Z

cve-icon NVD

Status : Analyzed

Published: 2026-07-29T15:16:29.500

Modified: 2026-08-05T17:23:43.097

Link: CVE-2026-65947

cve-icon Redhat

No data.

cve-icon OpenCVE Enrichment

Updated: 2026-08-04T23:15:07Z

Weaknesses
  • CWE-352

    Cross-Site Request Forgery (CSRF)