Joomla! Security News |
- [20140904] - Core - Denial of Service
- [20140903] - Core - Remote File Inclusion
- [20140902] - Core - Unauthorised Logins
- [20140901] - Core - XSS Vulnerability
- [20140301] - Core - SQL Injection
- [20140302] - Core - XSS Vulnerability
- [20140303] - Core - XSS Vulnerability
- [20140304] - Core - Unauthorised Logins
- [20131103] Core XSS Vulnerability
- [20131102] Core XSS Vulnerability
- [20131101] Core XSS Vulnerability
Posted: 30 Sep 2014 12:00 PM PDT
DescriptionInadequate checking allowed the potential for a denial of service attack.Affected InstallsJoomla! CMS versions 2.5.4 through 2.5.25, 3.2.5 and earlier 3.x versions, 3.3.0 through 3.3.4SolutionUpgrade to version 2.5.26, 3.2.6, or 3.3.5ContactThe JSST at the Joomla! Security Center.
Reported By: Johannes Dahse
|
Posted: 30 Sep 2014 12:00 PM PDT
DescriptionInadequate checking allowed the potential for remote files to be executed.Affected InstallsJoomla! CMS versions 2.5.4 through 2.5.25, 3.2.5 and earlier 3.x versions, 3.3.0 through 3.3.4SolutionUpgrade to version 2.5.26, 3.2.6, or 3.3.5Additional DetailsPlease refer to AkeebaBackup.com for additional details.ContactThe JSST at the Joomla! Security Center.
Reported By: Johannes Dahse
|
Posted: 23 Sep 2014 12:00 PM PDT
DescriptionInadequate checking allowed unauthorised logins via LDAP authentication.Affected InstallsJoomla! CMS versions 2.5.24 and earlier 2.5.x versions, 3.2.4 and earlier 3.x versions, 3.3.0 through 3.3.3SolutionUpgrade to version 2.5.25, 3.2.5, or 3.3.4ContactThe JSST at the Joomla! Security Center.
Reported By: Matthew Daley
|
Posted: 23 Sep 2014 12:00 PM PDT
DescriptionInadequate escaping leads to XSS vulnerability in com_media.Affected InstallsJoomla! CMS versions 3.2.0 through 3.2.4 and 3.3.0 through 3.3.3SolutionUpgrade to version 3.2.5 or 3.3.4ContactThe JSST at the Joomla! Security Center.
Reported By: Dingjie (Daniel) Yang
|
Posted: 06 Mar 2014 12:30 PM PST
DescriptionInadequate escaping leads to SQL injection vulnerability.Affected InstallsJoomla! CMS versions 3.1.0 through 3.2.2SolutionUpgrade to version 3.2.3ContactThe JSST at the Joomla! Security Center.
Reported By: ??
|
Posted: 06 Mar 2014 12:30 PM PST
DescriptionInadequate escaping leads to XSS vulnerability in com_contact.Affected InstallsJoomla! CMS versions 3.1.2 through 3.2.2SolutionUpgrade to version 3.2.3ContactThe JSST at the Joomla! Security Center.
Reported By: ??
|
Posted: 06 Mar 2014 12:30 PM PST
DescriptionInadequate escaping leads to XSS vulnerability.Affected InstallsJoomla! CMS versions 2.5.18 and earlier 2.5.x versions, 3.2.2 and earlier 3.x versionsSolutionUpgrade to version 2.5.19 or 3.2.3ContactThe JSST at the Joomla! Security Center.
Reported By: JSST
|
Posted: 06 Mar 2014 12:30 PM PST
DescriptionInadequate checking allowed unauthorised logins via GMail authentication.Affected InstallsJoomla! CMS versions 2.5.18 and earlier 2.5.x versions, 3.2.2 and earlier 3.x versionsSolutionUpgrade to version 2.5.19 or 3.2.3ContactThe JSST at the Joomla! Security Center.
Reported By: Stefania Gaianigo
|
Posted: 06 Nov 2013 10:47 AM PST
DescriptionInadequate filtering leads to XSS vulnerability in com_contact.Affected InstallsJoomla! version 2.5.14 and earlier 2.5.x versions; and version 3.1.5 and earlier 3.0.x versions.SolutionUpgrade to version 2.5.16, 3.1.6 or 3.2.ContactThe JSST at the Joomla! Security Center.
Reported By: Osanda Malith Jayathissa
|
Posted: 06 Nov 2013 10:47 AM PST
DescriptionInadequate filtering leads to XSS vulnerability in com_contact, com_weblinks, com_newsfeeds.Affected InstallsJoomla! version 2.5.14 and earlier 2.5.x versions; and version 3.1.5 and earlier 3.0.x versions.SolutionUpgrade to version 2.5.16, 3.1.6 or 3.2.ContactThe JSST at the Joomla! Security Center.
Reported By: Osanda Malith Jayathissa
|
Posted: 06 Nov 2013 10:47 AM PST
DescriptionInadequate filtering leads to XSS vulnerability in com_contact.Affected InstallsJoomla! version 2.5.14 and earlier 2.5.x versions; and version 3.1.5 and earlier 3.0.x versions.SolutionUpgrade to version 2.5.16, 3.1.6 or 3.2.ContactThe JSST at the Joomla! Security Center.
Reported By: Osanda Malith Jayathissa
|
Komentarų nėra:
Rašyti komentarą