Frontpage

[20110203] - Core - XSS Vulnerabilities

PDF Print
  • Project: Joomla!
  • SubProject: All
  • Severity: Moderate
  • Versions: 1.6.0
  • Exploit type: Cross Site Scripting
  • Reported Date: 2011-January-23
  • Fixed Date: 2011-March-07

Description

Inadequate checking for double URI encoding leads to XSS vulnerabilities.

Affected Installs

Joomla! Version 1.6.0 installs.

Solution

Upgrade to the latest Joomla! version (16.1 or later)

Reported by Hoyt LLC Research

Contact

The JSST at the Joomla! Security Center.


Read full...
Author:
 
More Articles in This Category
© 2006 - 2012 Joomlaspan • Powered by Joomla! 1.5 • Privacy Policy