Multiple cross-site scripting (XSS) vulnerabilities in Joomla! before 1.0.4 allow remote attackers to inject arbitrary web script or HTML via (1) "GET and other variables" and (2) "SEF".
Link | Tags |
---|---|
http://www.osvdb.org/21039 | vdb entry |
http://www.vupen.com/english/advisories/2005/2526 | vdb entry |
http://www.securityfocus.com/bid/15526 | vdb entry patch |
http://www.joomla.org/content/view/499/66/ | |
http://www.osvdb.org/21040 | vdb entry |
http://secunia.com/advisories/17675 | third party advisory patch vendor advisory |