VYPR
Unrated severityNVD Advisory· Published Aug 8, 2007· Updated Apr 23, 2026

CVE-2007-4189

CVE-2007-4189

Description

Multiple cross-site scripting (XSS) vulnerabilities in Joomla! before 1.0.13 (aka Sunglow) allow remote attackers to inject arbitrary web script or HTML via unspecified vectors in the (1) com_search, (2) com_content, and (3) mod_login components. NOTE: some of these details are obtained from third party information.

Affected products

1
  • cpe:2.3:a:joomla:joomla\!:*:*:*:*:*:*:*:*
    Range: <1.0.13

Patches

0

No patches discovered yet.

Vulnerability mechanics

AI mechanics synthesis has not run for this CVE yet.

References

6

News mentions

0

No linked articles in our index yet.