Description
The cross-site scripting (XSS) countermeasures in class.inputfilter.php in Joomla! 1.0.7 allow remote attackers to cause a denial of service via a crafted mosmsg parameter to index.php with a malformed sequence of multiple tags, as demonstrated using "<<>AAA<><>", possibly due to nested or empty tags.
Remediation
References
Related Vulnerabilities
WordPress Plugin WP-ViperGB Cross-Site Scripting (1.3.15)
WordPress Plugin WP Security Question Cross-Site Request Forgery (1.0.5)
Highcharts JS Incorrect Regular Expression Vulnerability (CVE-2018-20801)
WordPress Plugin WooCommerce PayPlug Unspecified Vulnerability (3.1.0)
WordPress Plugin iFlyChat-WordPress Chat Cross-Site Scripting (4.6.4)