Back to list
*Note: Email address will appear as "user domain ext" to prevent harvesting.
Reflected Cross-Site Scripting (XSS) in Simple Email Form Joomla Extension
Nov 19 2014 10:27AM
High-Tech Bridge Security Research (advisory htbridge com)
Advisory ID: HTB23241
Product: Simple Email Form Joomla Extension
Vendor: Doug Bierer
Vulnerable Version(s): 1.8.5 and probably prior
Tested Version: 1.8.5
Advisory Publication: October 29, 2014 [without technical details]
Vendor Notification: October 29, 2014
Public Disclosure: November 19, 2014...
[ more ]
Copyright 2010, SecurityFocus