Security Advisory

CVE-2009-4233

CVE vulnerability detail - eXtreme Datacenter Security Operations

Published 2009-12-08 19:00:00
Last updated 2024-09-16 22:25:47
Assigner mitre
CVSS score not scored
State PUBLISHED

Description

Cross-site scripting (XSS) vulnerability in modules/mod_yj_whois.php in the YJ Whois component 1.0x and 1.5.x for Joomla! allows remote attackers to inject arbitrary web script or HTML via the domain parameter to index.php. NOTE: some of these details are obtained from third party information.