3.5
CVSSv2

CVE-2019-15120

Published: 16/08/2019 Updated: 02/03/2023
CVSS v2 Base Score: 3.5 | Impact Score: 2.9 | Exploitability Score: 6.8
CVSS v3 Base Score: 5.4 | Impact Score: 2.7 | Exploitability Score: 2.3
VMScore: 312
Vector: AV:N/AC:M/Au:S/C:N/I:P/A:N

Vulnerability Summary

The Kunena extension prior to 5.1.14 for Joomla! allows XSS via BBCode.

Vulnerability Trend

Vulnerable Product Search on Vulmon Subscribe to Product

kunena kunena

Github Repositories

Exploit for XSS via BBCode on Kunena extension before 5.1.14 for Joomla!

CVE-2019-15120 Exploit for XSS via BBCode on Kunena extension before 5114 for Joomla! Information Description: In Kunena extension before 5114 for Joomla!, it’s possible for any user to execute a stored XSS attack by sending special message in any field with BBcode support As a result, the vulnerability can easily leads to RCE Versions Affected: Kunena extension for