Multiple cross-site request forgery (CSRF) vulnerabilities in Joomla! before 1.5 RC4 allow remote attackers to (1) add a Super Admin, (2) upload an extension containing arbitrary PHP code, and (3) modify the configuration as administrators via unspecified vectors.
We have discovered 123,696 live websites that are affected by CVE-2007-6642.
| Product | |
| Category | Content Management System |
| Vulnerable Domains | 123,696 live websites (93% of Joomla install base) |
| Vulnerable Versions |
|
| Vulnerable Versions Count | 1 versions ( 0.77% of all versions) |
| 6,482 websites | |
| 36,211 websites | |
| 10,328 websites | |
| 6,998 websites | |
| 6,431 websites | |
| 5,121 websites | |
| 4,966 websites | |
| 4,604 websites | |
| 4,265 websites | |
| 3,713 websites |
| .com | 26,729 websites |
| .it | 24,075 websites |
| .ru | 8,600 websites |
| .nl | 3,865 websites |
| .de | 3,292 websites |
| .se | 3,126 websites |
| .org | 2,922 websites |
| .cz | 2,860 websites |
| .co.uk | 2,717 websites |
| .net | 2,437 websites |
| Domain | Country | Rank | Contacts |
|---|---|---|---|
| *****.com | **,*** | ||
| ************.com | **,*** | ||
| *********************.com | **,*** | ||
| *****.org | **,*** | ||
| ********.com | **,*** | ||
| *****.it | **,*** | ||
| *********.com | **,*** | ||
| ******.cz | **,*** | ||
| *******.ru | **,*** | ||
| *******.com | **,*** |