Description
In Joomla! 1.5.0 through 3.6.5 (fixed in 3.7.0), inadequate filtering of specific HTML attributes leads to XSS vulnerabilities in various components.
Remediation
References
Related Vulnerabilities
WordPress Plugin Duplicator-WordPress Migration Security Bypass (0.5.8)
osCommerce Improper Control of Generation of Code ('Code Injection') Vulnerability (CVE-2002-2019)
WordPress Plugin WP e-Commerce Shop Styling Arbitrary File Download (2.5)
WordPress Plugin April's Super Functions Pack Cross-Site Scripting (1.4.7)