Search: Home Bugtraq Vulnerabilities Mailing Lists Jobs Tools Beta Programs

Joomla! 'com_user' Component Token Input Validation Vulnerability

The 'com_user' component for Joomla! is prone to an input-validation vulnerability because it fails to sufficiently sanitize user-supplied data.

Exploiting this issue could allow an attacker to obtain administrative privileges and compromise the application.

This issue affects Joomla! 1.5.5; other versions may also be affected. Mambo may also be affected.

NOTE: This BID was previously titled 'Joomla! 'com_user' Component SQL Injection Vulnerability'. The title was updated to better reflect the issue.







 

Privacy Statement
Copyright 2009, SecurityFocus