Multiple cross-site scripting (XSS) vulnerabilities in Joomla! 1.5 through 1.5.9 allow remote attackers to inject arbitrary web script or HTML via unspecified vectors to the (1) com_admin component, (2) com_search component when "Gather Search Statistics" is enabled, and (3) the category view in the com_content component.
We have discovered 195,641 live websites that are affected by CVE-2009-1279.
| Product | |
| Category | Content Management System |
| Vulnerable Domains | 195,641 live websites (95% of Joomla install base) |
| Vulnerable Versions |
|
| Vulnerable Versions Count | 1 versions ( 0.97% of all versions) |
| 14,486 websites | |
| 51,181 websites | |
| 13,611 websites | |
| 12,086 websites | |
| 11,933 websites | |
| 10,934 websites | |
| 8,337 websites | |
| 6,542 websites | |
| 6,336 websites | |
| 4,738 websites |
| .com | 48,426 websites |
| .it | 33,475 websites |
| .ru | 11,465 websites |
| .pl | 8,465 websites |
| .org | 6,193 websites |
| .co.uk | 5,791 websites |
| .nl | 5,728 websites |
| .de | 5,403 websites |
| .com.au | 4,672 websites |
| .net | 4,423 websites |
| Domain | Country | Rank | Contacts |
|---|---|---|---|
| *****************.de | *,*** | ||
| *******.**.ca | *,*** | ||
| ***********.**.za | **,*** | ||
| **************.se | **,*** | ||
| ***************.com | **,*** | ||
| *********.com | **,*** | ||
| *****.**.uk | **,*** | ||
| ************.com | **,*** | ||
| *********************.com | **,*** | ||
| ****.pl | **,*** |