Description
Joomla! 1.6.x before 1.6.2 does not prevent page rendering inside a frame in a third-party HTML document, which makes it easier for remote attackers to conduct clickjacking attacks via a crafted web site.
Remediation
References
Related Vulnerabilities
e107 Cross-Site Request Forgery (CSRF) Vulnerability (CVE-2018-17081)
Magento Exposure of Sensitive Information to an Unauthorized Actor Vulnerability (CVE-2019-7951)
Apache Tomcat Permissions, Privileges, and Access Controls Vulnerability (CVE-2016-0714)
PHP Other Vulnerability (CVE-2015-8876)
Oracle JRE Cryptographic Issues Vulnerability (CVE-2012-2739)