Description
Joomla! Core is prone to a spam vulnerability. Exploiting this issue may allow attackers to send spam through the affected website. Joomla! Core versions 1.5.x ranging from 1.5.0 and up to and including 1.5.22 are vulnerable.
Remediation
Update to Joomla! Core version 1.5.23 or latest
References
https://developer.joomla.org/joomlacode-archive/issue-24289.html
https://www.exploit-db.com/exploits/15979/
https://www.joomla.org/announcements/release-news/5367-joomla-1523-released.html
Related Vulnerabilities
Jboss EAP Improper Control of Generation of Code ('Code Injection') Vulnerability (CVE-2014-0248)
WordPress Plugin Cookie Information-Free GDPR Consent Solution Cross-Site Scripting (1.5.5)
WordPress Plugin Wufoo Shortcode Cross-Site Scripting (1.47)
RubyGems Improper Input Validation Vulnerability (CVE-2017-0901)
WordPress Plugin My Calendar Multiple Vulnerabilities (2.3.29)