The cross-site scripting (XSS) countermeasures in class.inputfilter.php in Joomla! 1.0.7 allow remote attackers to cause a denial of service via a crafted mosmsg parameter to index.php with a malformed sequence of multiple tags, as demonstrated using «>AAA<><>, possibly due to nested or empty tags.
Name | Vendor | Start Version | End Version |
---|---|---|---|
Joomla | Joomla | 1.0.7 (including) | 1.0.7 (including) |