Joomla! Multiple Cross Site Scripting and SQL Injection Vulnerabilities
Description
Multiple vulnerabilities have been identified in Joomla!, which could be exploited to conduct cross site scripting or SQL injection attacks. These issues are caused by input validation errors in the administrative and back-end interfaces when processing user-supplied data, which could be exploited by attackers to cause arbitrary scripting code to be executed by the user's browser in the security context of an affected Web site, or disclose certain information via SQL injection attacks.
Vulnerable Products
Vulnerable Software: Joomla! version 1.5.19 and prior