Description
Joomla! Core is prone to a variable injection vulnerability. Exploiting this issue may allow attackers to inject unwanted characters into returned data; other attacks with unspecified impact are also possible. Joomla! Core versions 1.5.x ranging from 1.5.0 and up to and including 1.5.6 are vulnerable.
Remediation
Update to Joomla! Core version 1.5.7 or latest
References
Related Vulnerabilities
WordPress Plugin Podcast Channels Cross-Site Scripting (0.20)
WordPress Plugin WordPress Social Login (Facebook, Google, Twitter) Unspecified Vulnerability (7.2)
WordPress Plugin Slideshow Gallery LITE Cross-Site Scripting (1.5.3.4)
WordPress Plugin WP Google Maps Cross-Site Request Forgery (7.11.27)
WordPress Plugin WordPress Photo Gallery-Image Gallery Cross-Site Request Forgery (1.0.6)