Joomla! 1.5.x before 1.5.26 has unspecified impact and attack vectors related to "insufficient randomness" and a "password reset vulnerability."
Weaknesses in this category are related to the management of permissions, privileges, and other security features that are used to perform access control.
Link | Tags |
---|---|
http://www.openwall.com/lists/oss-security/2012/08/27/6 | mailing list |
http://www.openwall.com/lists/oss-security/2012/03/29/5 | mailing list |
http://developer.joomla.org/security/news/396-20120305-core-password-change.html | vendor advisory |