← Back

CVE-2011-2890

nvd nist
Published: Jul 27, 2011Modified: Apr 29, 2026

JSON object

Loading...
5.0
Vector
AV:N/AC:L/Au:N/C:P/I:N/A:N
Exploitability: 10.0 / Impact: 2.9
Source: NVD

Description

The MediaViewMedia class in administrator/components/com_media/views/media/view.html.php in Joomla! 1.5.23 and earlier allows remote attackers to obtain sensitive information via vectors involving the base variable, leading to disclosure of the installation path, a different vulnerability than CVE-2011-2488.

Affected (25)

Products: Joomla: Joomla!
1 product
Joomla!
Configuration A
25 vulnerable
Vulnerable SoftwareAffected Versions
Joomla
Up to 1.5.23
Version 1.5.0
Version 1.5.10
Version 1.5.11
Version 1.5.12
Version 1.5.13
Version 1.5.14
Version 1.5.15
Version 1.5.15 rc
Version 1.5.16
Version 1.5.17
Version 1.5.18
Version 1.5.19
Version 1.5.1
Version 1.5.20
Version 1.5.21
Version 1.5.22
Version 1.5.2
Version 1.5.3
Version 1.5.4
Version 1.5.5
Version 1.5.6
Version 1.5.7
Version 1.5.8
Version 1.5.9

References (4)

Timeline

No history available yet.