Description
Joomla! before 1.5.15 allows remote attackers to read an extension's XML file, and thereby obtain the extension's version number, via a direct request.
Remediation
References
Related Vulnerabilities
Apache Tomcat Permissions, Privileges, and Access Controls Vulnerability (CVE-2012-5885)
WordPress Plugin PickPlugins Product Slider for WooCommerce Cross-Site Scripting (1.13.21)
WordPress Plugin Advanced Custom Fields PRO Arbitrary File Upload (5.12.2)
WordPress Plugin Bug Library Unspecified Vulnerability (2.0.7)