Description
Joomla! Core is prone to a security bypass vulnerability. Exploiting this issue may allow attackers to perform otherwise restricted actions and subsequently guess password reset tokens. Joomla! Core versions 1.5.x ranging from 1.5.0 and up to and including 1.5.6 are vulnerable.
Remediation
Update to Joomla! Core version 1.5.7 or latest
References
Related Vulnerabilities
WordPress Plugin Open Graph for Facebook, Google+ and Twitter Card Tags Cross-Site Scripting (2.2.4)
WordPress Plugin Comment Link Remove and Other Comment Tools Cross-Site Request Forgery (2.1.4)
Moodle Permissions, Privileges, and Access Controls Vulnerability (CVE-2014-3617)
Oracle Application Server Other Vulnerability (CVE-2005-3448)
WordPress Plugin Contest Gallery-Photo Contest for WordPress Cross-Site Scripting (13.1.0.9)