Joomla!
http://forum.joomla.org/

[FIXED in 1.0.10] XSS Vulnerabilities in Joomla 1.0.9 Stable
http://forum.joomla.org/viewtopic.php?f=267&t=70529
Page 1 of 1

Author:  negarkhane [ Tue Jun 20, 2006 7:18 am ]
Post subject:  [FIXED in 1.0.10] XSS Vulnerabilities in Joomla 1.0.9 Stable

My Friend Found 2 XSS Vulnerabilities in Joomla 1.0.9 Stable:
Fronted :
1.[URL removed]">
Backend:
2.in Admin Private Message: Subject:



[MOD noted edited for security reasons]

Author:  stingrey [ Wed Jun 21, 2006 6:59 pm ]
Post subject:  Re: [CONFIRMED] XSS Vulnerabilities in Joomla 1.0.9 Stable

Fixed in 1.0.10 SVN



Both these security vulnerabilites are designated as :
[LOW LEVEL] A4 Cross Site Scripting

Author:  negarkhane [ Thu Jun 22, 2006 6:09 am ]
Post subject:  Re: [FIXED SVN] XSS Vulnerabilities in Joomla 1.0.9 Stable

thanks

Author:  stingrey [ Mon Jun 26, 2006 5:12 am ]
Post subject:  Re: [FIXED SVN] XSS Vulnerabilities in Joomla 1.0.9 Stable

Upgrade to Joomla! 1.0.10 Security Release!
http://www.joomla.org/content/view/1510/74/

Page 1 of 1 All times are UTC
Powered by phpBB © 2000, 2002, 2005, 2007 phpBB Group
http://www.phpbb.com/