Home page logo

oss-sec logo oss-sec mailing list archives

Re: Fwd: Joomla! Security News
From: Josh Bressers <bressers () redhat com>
Date: Wed, 20 Jul 2011 16:28:26 -0400 (EDT)

Please use CVE-2011-2708



----- Original Message -----
Joomla! Developer Network - Security News

[20110701] - XSS Vulnerability

Posted: 19 Jul 2011 09:15 PM PDT

Project: Joomla!
SubProject: All
Severity: Medium
Versions: 1.6.5 and all earlier 1.6.x versions
Exploit type: XSS
Reported Date: 2011-July-11
Fixed Date: 2011-July-19


Inadequate escaping leads to XSS vulnerability.

Affected Installs

Joomla! version 1.6.5 and all earlier 1.6.x versions

Upgrade to the latest Joomla! version (1.7.0 or later)

Reported by Aung Khant

The JSST at the Joomla! Security Center.

  By Date           By Thread  

Current thread:
[ Nmap | Sec Tools | Mailing Lists | Site News | About/Contact | Advertising | Privacy ]