Vulnerability Database

296,147

Total vulnerabilities in the database

CVE-2011-2892

Joomla! 1.6.x before 1.6.2 does not prevent page rendering inside a frame in a third-party HTML document, which makes it easier for remote attackers to conduct clickjacking attacks via a crafted web site.

  • Published: Jul 27, 2011
  • Updated: Apr 13, 2023
  • CVE: CVE-2011-2892
  • Severity: Low
  • Exploit:

CVSS v2:

  • Severity: Low
  • Score: 4.3
  • AV:N/AC:M/Au:N/C:N/I:P/A:N

CWEs:

Software From Fixed in
Joomla / joomla 1.6-beta15 1.6-beta15.x
Joomla / joomla 1.6-beta12 1.6-beta12.x
Joomla / joomla 1.6-beta3 1.6-beta3.x
Joomla / joomla 1.6-beta13 1.6-beta13.x
Joomla / joomla 1.6.1 1.6.1.x
Joomla / joomla 1.6-beta8 1.6-beta8.x
Joomla / joomla 1.6-beta5 1.6-beta5.x
Joomla / joomla 1.6.0 1.6.0.x
Joomla / joomla 1.6-beta1 1.6-beta1.x
Joomla / joomla 1.6-beta6 1.6-beta6.x
Joomla / joomla 1.6-beta7 1.6-beta7.x
Joomla / joomla 1.6-beta14 1.6-beta14.x
Joomla / joomla 1.6-beta11 1.6-beta11.x
Joomla / joomla 1.6-beta2 1.6-beta2.x
Joomla / joomla 1.6-alpha2 1.6-alpha2.x
Joomla / joomla 1.6-alpha 1.6-alpha.x
Joomla / joomla 1.6-beta4 1.6-beta4.x
Joomla / joomla 1.6-rc1 1.6-rc1.x
Joomla / joomla 1.6-beta9 1.6-beta9.x
Joomla / joomla 1.6-beta10 1.6-beta10.x