An issue was discovered in Joomla! through 3.9.19. A missing token check in the remove request section of com_privacy causes a CSRF vulnerability.
We have discovered 210,891 live websites that are affected by CVE-2020-15695.
| Product | |
| Category | Content Management System |
| Vulnerable Domains | 210,891 live websites (99% of Joomla install base) |
| Vulnerable Versions |
|
| Vulnerable Versions Count | 81 versions ( 79% of all versions) |
| 15,342 websites | |
| 52,660 websites | |
| 15,891 websites | |
| 12,820 websites | |
| 12,664 websites | |
| 12,431 websites | |
| 9,179 websites | |
| 6,605 websites | |
| 6,327 websites | |
| 6,059 websites |
| .com | 52,626 websites |
| .it | 34,254 websites |
| .ru | 13,378 websites |
| .pl | 8,956 websites |
| .org | 6,496 websites |
| .co.uk | 6,158 websites |
| .de | 5,912 websites |
| .nl | 5,779 websites |
| .net | 4,696 websites |
| .com.au | 4,327 websites |
| Domain | Country | Rank | Contacts |
|---|---|---|---|
| *****************.de | *,*** | ||
| *******.**.ca | *,*** | ||
| *****.com | **,*** | ||
| ***********.**.za | **,*** | ||
| **************.se | **,*** | ||
| ***************.com | **,*** | ||
| *********.com | **,*** | ||
| ************.com | **,*** | ||
| *****.**.uk | **,*** | ||
| ************.com | **,*** |