Skip to main content

CVE-2015-8562

CVSS Score Not Available
92.86%
HIGH RiskEPSS (100th percentile)

Joomla! 1.5.x, 2.x, and 3.x before 3.4.6 allow remote attackers to conduct PHP object injection attacks and execute arbitrary PHP code via the HTTP User-Agent header, as exploited in the wild in December 2015.

Published: 12/16/2015
Modified: 4/12/2025
Back to CVE Lookup

Vulnerability Summary

EPSS Score (Exploitation Probability)

92.86%HIGH Exploitation Risk
100th percentile

This vulnerability has a 92.86% probability of being exploited in the next 30 days, ranking higher than 100% of all scored CVEs.