Vulnerability Database

296,202

Total vulnerabilities in the database

CVE-2016-9081

Joomla! 3.4.4 through 3.6.3 allows attackers to reset username, password, and user group assignments and possibly perform other user account modifications via unspecified vectors.

  • Published: Jan 23, 2017
  • Updated: Apr 13, 2023
  • CVE: CVE-2016-9081
  • Severity: Critical
  • Exploit:

CVSS v3:

  • Severity: Critical
  • Score: 9.8
  • AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H

CVSS v2:

  • Severity: High
  • Score: 7.5
  • AV:N/AC:L/Au:N/C:P/I:P/A:P

CWEs:

Software From Fixed in
Joomla / joomla 3.5.0-beta3 3.5.0-beta3.x
Joomla / joomla 3.6.0-beta2 3.6.0-beta2.x
Joomla / joomla 3.6.0-beta1 3.6.0-beta1.x
Joomla / joomla 3.5.0-rc3 3.5.0-rc3.x
Joomla / joomla 3.6.0-rc 3.6.0-rc.x
Joomla / joomla 3.4.4 3.4.4.x
Joomla / joomla 3.6.1-rc2 3.6.1-rc2.x
Joomla / joomla 3.6.2 3.6.2.x
Joomla / joomla 3.4.8-rc 3.4.8-rc.x
Joomla / joomla 3.5.1-rc2 3.5.1-rc2.x
Joomla / joomla 3.5.0-rc4 3.5.0-rc4.x
Joomla / joomla 3.5.0-rc 3.5.0-rc.x
Joomla / joomla 3.5.0-beta2 3.5.0-beta2.x
Joomla / joomla 3.6.0 3.6.0.x
Joomla / joomla 3.4.5 3.4.5.x
Joomla / joomla 3.4.6 3.4.6.x
Joomla / joomla 3.6.3 3.6.3.x
Joomla / joomla 3.5.0-beta4 3.5.0-beta4.x
Joomla / joomla 3.6.3-rc1 3.6.3-rc1.x
Joomla / joomla 3.5.0 3.5.0.x
Joomla / joomla 3.5.1 3.5.1.x
Joomla / joomla 3.5.0-beta 3.5.0-beta.x
Joomla / joomla 3.4.7 3.4.7.x
Joomla / joomla 3.5.0-rc2 3.5.0-rc2.x
Joomla / joomla 3.5.0-beta5 3.5.0-beta5.x
Joomla / joomla 3.6.0-rc2 3.6.0-rc2.x
Joomla / joomla 3.6.1-rc1 3.6.1-rc1.x
Joomla / joomla 3.6.3-rc3 3.6.3-rc3.x
Joomla / joomla 3.4.8 3.4.8.x
Joomla / joomla 3.6.3-rc2 3.6.3-rc2.x
Joomla / joomla 3.6.1 3.6.1.x
Joomla / joomla 3.5.1-rc 3.5.1-rc.x
Joomla / joomla 3.6.0-alpha 3.6.0-alpha.x