← Back

CVE-2020-13760

nvd nist
Published: Jun 2, 2020Modified: Nov 21, 2024

JSON object

Loading...
8.8
Vector
CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H
Exploitability: 2.8 / Impact: 5.9
Source: NVD

Description

In Joomla! before 3.9.19, missing token checks in com_postinstall lead to CSRF.

Affected (12)

Products: Joomla: Joomla!
1 product
Joomla!
Configuration A
12 vulnerable
Vulnerable SoftwareAffected Versions
Joomla
From 3.7.1 to 3.9.19
Version 3.7.0
Version 3.7.0 alpha1
Version 3.7.0 alpha2
Version 3.7.0 beta1
Version 3.7.0 beta2
Version 3.7.0 beta3
Version 3.7.0 beta4
Version 3.7.0 rc1
Version 3.7.0 rc2
Version 3.7.0 rc3
Version 3.7.0 rc4

Timeline

No history available yet.