<?xml version="1.0" encoding="UTF-8"?>
<?xml-stylesheet type="text/xsl" media="screen" href="/~d/styles/rss2full.xsl"?><?xml-stylesheet type="text/css" media="screen" href="http://feeds.joomla.org/~d/styles/itemcontent.css"?><!-- generator="Joomla! 1.5 - Open Source Content Management" --><rss xmlns:atom="http://www.w3.org/2005/Atom" xmlns:feedburner="http://rssnamespace.org/feedburner/ext/1.0" version="2.0">
	<channel>
		<title>Joomla! Developer - Vulnerability News</title>
		<description>Not only is Joomla! easy to use, but it is easy to add extra functionality through a flexible and powerful developer framework. The Joomla! Framework allows you to build exceptional extensions for Joomla! including components, modules, plugins, templates and language packs.</description>
		<link>http://developer.joomla.org/security/news.html</link>
		<lastBuildDate>Thu, 02 Sep 2010 14:10:58 +0000</lastBuildDate>
		<generator>Joomla! 1.5 - Open Source Content Management</generator>
		<language>en-gb</language>
		<atom10:link xmlns:atom10="http://www.w3.org/2005/Atom" rel="self" type="application/rss+xml" href="http://feeds.joomla.org/JoomlaSecurityNews" /><feedburner:info uri="joomlasecuritynews" /><atom10:link xmlns:atom10="http://www.w3.org/2005/Atom" rel="hub" href="http://pubsubhubbub.appspot.com/" /><feedburner:emailServiceId>JoomlaSecurityNews</feedburner:emailServiceId><feedburner:feedburnerHostname>http://feedburner.google.com</feedburner:feedburnerHostname><item>
			<title>[20100704] - Core - XSS Vulnerabillitis in Back End</title>
			<link>http://feeds.joomla.org/~r/JoomlaSecurityNews/~3/7XWF1XIVZDk/318-20100704-core-xss-vulnerabillitis-in-back-end.html</link>
			<guid isPermaLink="false">http://developer.joomla.org/security/news/318-20100704-core-xss-vulnerabillitis-in-back-end.html</guid>
			<description>&lt;ul&gt;
 &lt;li&gt;&lt;strong&gt;Project:&lt;/strong&gt; Joomla!&lt;/li&gt;
 &lt;li&gt;&lt;strong&gt;SubProject:&lt;/strong&gt; All&lt;/li&gt;
 &lt;li&gt;&lt;strong&gt;Severity: &lt;/strong&gt;Medium&lt;/li&gt;
 &lt;li&gt;&lt;strong&gt;Versions:&lt;/strong&gt; 1.5.19 and all previous 1.5 releases&lt;/li&gt;
 &lt;li&gt;&lt;strong&gt;Exploit type:&lt;/strong&gt; XSS Injection&lt;/li&gt;
 &lt;li&gt;&lt;strong&gt;Reported Date:&lt;/strong&gt; 2010-June-1&lt;/li&gt;
 &lt;li&gt;&lt;strong&gt;Fixed Date:&lt;/strong&gt; 2010-July-15&lt;/li&gt;
&lt;/ul&gt;
&lt;h2&gt;Description&lt;/h2&gt;
&lt;p&gt;Back-end user can inject Javascript in various administrator screens.&lt;/p&gt;
&lt;h2&gt;Affected Installs&lt;/h2&gt;
&lt;p&gt;All 1.5.x installs prior to and including 1.5.19 are affected.&lt;/p&gt;
&lt;h2&gt;Solution&lt;/h2&gt;
&lt;p&gt;Upgrade to the latest Joomla! version (1.5.20 or later)&lt;/p&gt;
&lt;p&gt;Reported by Mesut Timur.&lt;/p&gt;
&lt;h2&gt;Contact&lt;/h2&gt;
&lt;p&gt;The JSST at the &lt;a title="Contact the JSST" href="http://developer.joomla.org/security.html"&gt;Joomla! Security Center&lt;/a&gt;.&lt;/p&gt;&lt;div class="feedflare"&gt;
&lt;a href="http://feeds.joomla.org/~ff/JoomlaSecurityNews?a=7XWF1XIVZDk:aF6vwI4u8vs:yIl2AUoC8zA"&gt;&lt;img src="http://feeds.feedburner.com/~ff/JoomlaSecurityNews?d=yIl2AUoC8zA" border="0"&gt;&lt;/img&gt;&lt;/a&gt;
&lt;/div&gt;&lt;img src="http://feeds.feedburner.com/~r/JoomlaSecurityNews/~4/7XWF1XIVZDk" height="1" width="1"/&gt;</description>
			<author>dextercowley@gmail.com (Mark Dexter)</author>
			<category>Core Security</category>
			<pubDate>Thu, 15 Jul 2010 16:04:33 +0000</pubDate>
		<feedburner:origLink>http://developer.joomla.org/security/news/318-20100704-core-xss-vulnerabillitis-in-back-end.html</feedburner:origLink></item>
		<item>
			<title>[20100703] - Core - XSS Vulnerabillitis in Back End</title>
			<link>http://feeds.joomla.org/~r/JoomlaSecurityNews/~3/ZbOOlp0NZsU/317-20100703-core-xss-vulnerabillitis-in-back-end.html</link>
			<guid isPermaLink="false">http://developer.joomla.org/security/news/317-20100703-core-xss-vulnerabillitis-in-back-end.html</guid>
			<description>&lt;ul&gt;
 &lt;li&gt;&lt;strong&gt;Project:&lt;/strong&gt; Joomla!&lt;/li&gt;
 &lt;li&gt;&lt;strong&gt;SubProject:&lt;/strong&gt; All&lt;/li&gt;
 &lt;li&gt;&lt;strong&gt;Severity: &lt;/strong&gt;Medium&lt;/li&gt;
 &lt;li&gt;&lt;strong&gt;Versions:&lt;/strong&gt; 1.5.19 and all previous 1.5 releases&lt;/li&gt;
 &lt;li&gt;&lt;strong&gt;Exploit type:&lt;/strong&gt; XSS Injection&lt;/li&gt;
 &lt;li&gt;&lt;strong&gt;Reported Date:&lt;/strong&gt; 2010-June-8&lt;/li&gt;
 &lt;li&gt;&lt;strong&gt;Fixed Date:&lt;/strong&gt; 2010-July-15&lt;/li&gt;
&lt;/ul&gt;
&lt;h2&gt;Description&lt;/h2&gt;
&lt;p&gt;Back-end user can inject Javascript in various administrator screens.&lt;/p&gt;
&lt;h2&gt;Affected Installs&lt;/h2&gt;
&lt;p&gt;All 1.5.x installs prior to and including 1.5.19 are affected.&lt;/p&gt;
&lt;h2&gt;Solution&lt;/h2&gt;
&lt;p&gt;Upgrade to the latest Joomla! version (1.5.20 or later)&lt;/p&gt;
&lt;p&gt;Reported by José Antonio Vázquez González&lt;/p&gt;
&lt;h2&gt;Contact&lt;/h2&gt;
&lt;p&gt;The JSST at the &lt;a title="Contact the JSST" href="http://developer.joomla.org/security.html"&gt;Joomla! Security Center&lt;/a&gt;.&lt;/p&gt;&lt;div class="feedflare"&gt;
&lt;a href="http://feeds.joomla.org/~ff/JoomlaSecurityNews?a=ZbOOlp0NZsU:L3v3X7u1234:yIl2AUoC8zA"&gt;&lt;img src="http://feeds.feedburner.com/~ff/JoomlaSecurityNews?d=yIl2AUoC8zA" border="0"&gt;&lt;/img&gt;&lt;/a&gt;
&lt;/div&gt;&lt;img src="http://feeds.feedburner.com/~r/JoomlaSecurityNews/~4/ZbOOlp0NZsU" height="1" width="1"/&gt;</description>
			<author>dextercowley@gmail.com (Mark Dexter)</author>
			<category>Core Security</category>
			<pubDate>Thu, 15 Jul 2010 16:04:28 +0000</pubDate>
		<feedburner:origLink>http://developer.joomla.org/security/news/317-20100703-core-xss-vulnerabillitis-in-back-end.html</feedburner:origLink></item>
		<item>
			<title>[20100702] - Core - XSS Vulnerabillitis in Back End</title>
			<link>http://feeds.joomla.org/~r/JoomlaSecurityNews/~3/EvOE7k9N-jU/316-20100702-core-xss-vulnerabillitis-in-back-end.html</link>
			<guid isPermaLink="false">http://developer.joomla.org/security/news/316-20100702-core-xss-vulnerabillitis-in-back-end.html</guid>
			<description>&lt;ul&gt;
 &lt;li&gt;&lt;strong&gt;Project:&lt;/strong&gt; Joomla!&lt;/li&gt;
 &lt;li&gt;&lt;strong&gt;SubProject:&lt;/strong&gt; All&lt;/li&gt;
 &lt;li&gt;&lt;strong&gt;Severity: &lt;/strong&gt;Medium&lt;/li&gt;
 &lt;li&gt;&lt;strong&gt;Versions:&lt;/strong&gt; 1.5.19 and all previous 1.5 releases&lt;/li&gt;
 &lt;li&gt;&lt;strong&gt;Exploit type:&lt;/strong&gt; XSS Injection&lt;/li&gt;
 &lt;li&gt;&lt;strong&gt;Reported Date:&lt;/strong&gt; 2010-June-8&lt;/li&gt;
 &lt;li&gt;&lt;strong&gt;Fixed Date:&lt;/strong&gt; 2010-July-15&lt;/li&gt;
&lt;/ul&gt;
&lt;h2&gt;Description&lt;/h2&gt;
&lt;p&gt;Back-end user can inject Javascript in various administrator screens.&lt;/p&gt;
&lt;h2&gt;Affected Installs&lt;/h2&gt;
&lt;p&gt;All 1.5.x installs prior to and including 1.5.19 are affected.&lt;/p&gt;
&lt;h2&gt;Solution&lt;/h2&gt;
&lt;p&gt;Upgrade to the latest Joomla! version (1.5.20 or later)&lt;/p&gt;
&lt;p&gt;Reported by José Antonio Vázquez González&lt;/p&gt;
&lt;h2&gt;Contact&lt;/h2&gt;
&lt;p&gt;The JSST at the &lt;a title="Contact the JSST" href="http://developer.joomla.org/security.html"&gt;Joomla! Security Center&lt;/a&gt;.&lt;/p&gt;&lt;div class="feedflare"&gt;
&lt;a href="http://feeds.joomla.org/~ff/JoomlaSecurityNews?a=EvOE7k9N-jU:p_PisMjZkak:yIl2AUoC8zA"&gt;&lt;img src="http://feeds.feedburner.com/~ff/JoomlaSecurityNews?d=yIl2AUoC8zA" border="0"&gt;&lt;/img&gt;&lt;/a&gt;
&lt;/div&gt;&lt;img src="http://feeds.feedburner.com/~r/JoomlaSecurityNews/~4/EvOE7k9N-jU" height="1" width="1"/&gt;</description>
			<author>dextercowley@gmail.com (Mark Dexter)</author>
			<category>Core Security</category>
			<pubDate>Thu, 15 Jul 2010 16:04:23 +0000</pubDate>
		<feedburner:origLink>http://developer.joomla.org/security/news/316-20100702-core-xss-vulnerabillitis-in-back-end.html</feedburner:origLink></item>
		<item>
			<title>[20100701] - Core - SQL Injection / Internal Path Exposure</title>
			<link>http://feeds.joomla.org/~r/JoomlaSecurityNews/~3/_QEqFow4OjU/315-20100701-core-sql-injection-internal-path-exposure.html</link>
			<guid isPermaLink="false">http://developer.joomla.org/security/news/315-20100701-core-sql-injection-internal-path-exposure.html</guid>
			<description>&lt;ul&gt;
 &lt;li&gt;&lt;strong&gt;Project:&lt;/strong&gt; Joomla!&lt;/li&gt;
 &lt;li&gt;&lt;strong&gt;SubProject:&lt;/strong&gt; All&lt;/li&gt;
 &lt;li&gt;&lt;strong&gt;Severity: &lt;/strong&gt;Low&lt;/li&gt;
 &lt;li&gt;&lt;strong&gt;Versions:&lt;/strong&gt; 1.5.19 and all previous 1.5 releases&lt;/li&gt;
 &lt;li&gt;&lt;strong&gt;Exploit type:&lt;/strong&gt; Internal Path Exposure&lt;/li&gt;
 &lt;li&gt;&lt;strong&gt;Reported Date:&lt;/strong&gt; 2010-June-10&lt;/li&gt;
 &lt;li&gt;&lt;strong&gt;Fixed Date:&lt;/strong&gt; 2010-July-15&lt;/li&gt;
&lt;/ul&gt;
&lt;h2&gt;Description&lt;/h2&gt;
&lt;p&gt;Back-end user can create MySQL error which shows internal path information in the error message.&lt;/p&gt;
&lt;h2&gt;Affected Installs&lt;/h2&gt;
&lt;p&gt;All 1.5.x installs prior to and including 1.5.19 are affected.&lt;/p&gt;
&lt;h2&gt;Solution&lt;/h2&gt;
&lt;p&gt;Upgrade to the latest Joomla! version (1.5.20 or later)&lt;/p&gt;
&lt;p&gt;Reported by Andy Gorges&lt;/p&gt;
&lt;h2&gt;Contact&lt;/h2&gt;
&lt;p&gt;The JSST at the &lt;a title="Contact the JSST" href="http://developer.joomla.org/security.html"&gt;Joomla! Security Center&lt;/a&gt;.&lt;/p&gt;&lt;div class="feedflare"&gt;
&lt;a href="http://feeds.joomla.org/~ff/JoomlaSecurityNews?a=_QEqFow4OjU:VxO-jYqmuEQ:yIl2AUoC8zA"&gt;&lt;img src="http://feeds.feedburner.com/~ff/JoomlaSecurityNews?d=yIl2AUoC8zA" border="0"&gt;&lt;/img&gt;&lt;/a&gt;
&lt;/div&gt;&lt;img src="http://feeds.feedburner.com/~r/JoomlaSecurityNews/~4/_QEqFow4OjU" height="1" width="1"/&gt;</description>
			<author>dextercowley@gmail.com (Mark Dexter)</author>
			<category>Core Security</category>
			<pubDate>Thu, 15 Jul 2010 16:04:18 +0000</pubDate>
		<feedburner:origLink>http://developer.joomla.org/security/news/315-20100701-core-sql-injection-internal-path-exposure.html</feedburner:origLink></item>
		<item>
			<title>[20100501] - Core - XSS Vulnerabilities in Back End</title>
			<link>http://feeds.joomla.org/~r/JoomlaSecurityNews/~3/2M7RLQw-GQI/314-20100501-core-xss-vulnerabilities-in-back-end.html</link>
			<guid isPermaLink="false">http://developer.joomla.org/security/news/314-20100501-core-xss-vulnerabilities-in-back-end.html</guid>
			<description>&lt;ul&gt;
 &lt;li&gt;&lt;strong&gt;Project:&lt;/strong&gt; Joomla!&lt;/li&gt;
 &lt;li&gt;&lt;strong&gt;SubProject:&lt;/strong&gt; All&lt;/li&gt;
 &lt;li&gt;&lt;strong&gt;Severity: &lt;/strong&gt;High&lt;/li&gt;
 &lt;li&gt;&lt;strong&gt;Versions:&lt;/strong&gt; 1.5.17 and all previous 1.5 releases&lt;/li&gt;
 &lt;li&gt;&lt;strong&gt;Exploit type:&lt;/strong&gt; XSS Injection&lt;/li&gt;
 &lt;li&gt;&lt;strong&gt;Reported Date:&lt;/strong&gt; 2010-May-13&lt;/li&gt;
 &lt;li&gt;&lt;strong&gt;Fixed Date:&lt;/strong&gt; 2010-May-28&lt;/li&gt;
&lt;/ul&gt;
&lt;h2&gt;Description&lt;/h2&gt;
&lt;p&gt;Back-end user can inject javascript in various administrator screens.&lt;/p&gt;
&lt;h2&gt;Affected Installs&lt;/h2&gt;
&lt;p&gt;All 1.5.x installs prior to and including 1.5.17 are affected.&lt;/p&gt;
&lt;h2&gt;Solution&lt;/h2&gt;
&lt;p&gt;Upgrade to the latest Joomla! version (1.5.18 or later)&lt;/p&gt;
&lt;p&gt;Reported by &lt;span style="color: rgb(0, 0, 0); font-family: arial,sans-serif; line-height: normal;" class="Apple-style-span"&gt;Riyaz Ahemed&lt;/span&gt;&lt;/p&gt;
&lt;h2&gt;Contact&lt;/h2&gt;
&lt;p&gt;The JSST at the &lt;a href="http://developer.joomla.org/security.html" title="Contact the JSST"&gt;Joomla! Security Center&lt;/a&gt;.&lt;/p&gt;&lt;div class="feedflare"&gt;
&lt;a href="http://feeds.joomla.org/~ff/JoomlaSecurityNews?a=2M7RLQw-GQI:uN-RW56JGLE:yIl2AUoC8zA"&gt;&lt;img src="http://feeds.feedburner.com/~ff/JoomlaSecurityNews?d=yIl2AUoC8zA" border="0"&gt;&lt;/img&gt;&lt;/a&gt;
&lt;/div&gt;&lt;img src="http://feeds.feedburner.com/~r/JoomlaSecurityNews/~4/2M7RLQw-GQI" height="1" width="1"/&gt;</description>
			<author>dextercowley@gmail.com (Mark Dexter)</author>
			<category>Core Security</category>
			<pubDate>Fri, 28 May 2010 00:00:00 +0000</pubDate>
		<feedburner:origLink>http://developer.joomla.org/security/news/314-20100501-core-xss-vulnerabilities-in-back-end.html</feedburner:origLink></item>
		<item>
			<title>[20100423] - Core - Negative Values for Limit and Offset</title>
			<link>http://feeds.joomla.org/~r/JoomlaSecurityNews/~3/K3rjMh4AvSE/311-20100423-core-negative-values-for-limit-and-offset.html</link>
			<guid isPermaLink="false">http://developer.joomla.org/security/news/311-20100423-core-negative-values-for-limit-and-offset.html</guid>
			<description>&lt;ul&gt;
 &lt;li&gt;&lt;strong&gt;Project:&lt;/strong&gt; Joomla!&lt;/li&gt;
 &lt;li&gt;&lt;strong&gt;SubProject:&lt;/strong&gt; All&lt;/li&gt;
 &lt;li&gt;&lt;strong&gt;Severity: &lt;/strong&gt;Moderate&lt;/li&gt;
 &lt;li&gt;&lt;strong&gt;Versions:&lt;/strong&gt; 1.5.15 and all previous 1.5 releases&lt;/li&gt;
 &lt;li&gt;&lt;strong&gt;Exploit type:&lt;/strong&gt;&amp;nbsp;information Disclosure&lt;/li&gt;
 &lt;li&gt;&lt;strong&gt;Reported Date:&lt;/strong&gt; 2010-Feb-21&lt;/li&gt;
 &lt;li&gt;&lt;strong&gt;Fixed Date:&lt;/strong&gt; 2010-Apr-23&lt;/li&gt;
&lt;/ul&gt;
&lt;h2&gt;Description&lt;/h2&gt;
&lt;p&gt;If a user entered a URL with a negative query limit or offset, a PHP notice would display revealing information about the system.&lt;/p&gt;
&lt;h2&gt;Affected Installs&lt;/h2&gt;
&lt;p&gt;All 1.5.x installs prior to and including 1.5.15 are affected.&lt;/p&gt;
&lt;h2&gt;Solution&lt;/h2&gt;
&lt;p&gt;Upgrade to the latest Joomla! version (1.5.16 or later)&lt;/p&gt;
&lt;p&gt;Reported by Security List&lt;/p&gt;
&lt;h2&gt;Contact&lt;/h2&gt;
&lt;p&gt;The JSST at the &lt;a title="Contact the JSST" href="http://developer.joomla.org/security.html"&gt;Joomla! Security Center&lt;/a&gt;.&lt;/p&gt;&lt;div class="feedflare"&gt;
&lt;a href="http://feeds.joomla.org/~ff/JoomlaSecurityNews?a=K3rjMh4AvSE:926N0T6smCU:yIl2AUoC8zA"&gt;&lt;img src="http://feeds.feedburner.com/~ff/JoomlaSecurityNews?d=yIl2AUoC8zA" border="0"&gt;&lt;/img&gt;&lt;/a&gt;
&lt;/div&gt;&lt;img src="http://feeds.feedburner.com/~r/JoomlaSecurityNews/~4/K3rjMh4AvSE" height="1" width="1"/&gt;</description>
			<author>dextercowley@gmail.com (Mark Dexter)</author>
			<category>Core Security</category>
			<pubDate>Fri, 23 Apr 2010 17:31:43 +0000</pubDate>
		<feedburner:origLink>http://developer.joomla.org/security/news/311-20100423-core-negative-values-for-limit-and-offset.html</feedburner:origLink></item>
		<item>
			<title>[20100423] - Core - Installer Migration Script</title>
			<link>http://feeds.joomla.org/~r/JoomlaSecurityNews/~3/QLis4AG_-cs/310-20100423-core-installer-migration-script.html</link>
			<guid isPermaLink="false">http://developer.joomla.org/security/news/310-20100423-core-installer-migration-script.html</guid>
			<description>&lt;ul&gt;
 &lt;li&gt;&lt;strong&gt;Project:&lt;/strong&gt; Joomla!&lt;/li&gt;
 &lt;li&gt;&lt;strong&gt;SubProject:&lt;/strong&gt; All&lt;/li&gt;
 &lt;li&gt;&lt;strong&gt;Severity: &lt;/strong&gt;Low&lt;/li&gt;
 &lt;li&gt;&lt;strong&gt;Versions:&lt;/strong&gt; 1.5.15 and all previous 1.5 releases&lt;/li&gt;
 &lt;li&gt;&lt;strong&gt;Exploit type:&lt;/strong&gt; Code upload&lt;/li&gt;
 &lt;li&gt;&lt;strong&gt;Reported Date:&lt;/strong&gt; 2009-Dec-30&lt;/li&gt;
 &lt;li&gt;&lt;strong&gt;Fixed Date:&lt;/strong&gt; 2010-Apr-23&lt;/li&gt;
&lt;/ul&gt;
&lt;h2&gt;Description&lt;/h2&gt;
&lt;p&gt;The migration script in the Joomla! installer does not check the file type being uploaded. If the installation application is present, an attacker could use it to upload malicious files to a server.&lt;/p&gt;
&lt;h2&gt;Affected Installs&lt;/h2&gt;
&lt;p&gt;All 1.5.x installs prior to and including 1.5.15 are affected.&lt;/p&gt;
&lt;h2&gt;Solution&lt;/h2&gt;
&lt;p&gt;Upgrade to the latest Joomla! version (1.5.16 or later)&lt;/p&gt;
&lt;p&gt;Reported by Nicola Bettini&lt;/p&gt;
&lt;h2&gt;Contact&lt;/h2&gt;
&lt;p&gt;The JSST at the &lt;a title="Contact the JSST" href="http://developer.joomla.org/security.html"&gt;Joomla! Security Center&lt;/a&gt;.&lt;/p&gt;&lt;div class="feedflare"&gt;
&lt;a href="http://feeds.joomla.org/~ff/JoomlaSecurityNews?a=QLis4AG_-cs:naYYLgM-_Fk:yIl2AUoC8zA"&gt;&lt;img src="http://feeds.feedburner.com/~ff/JoomlaSecurityNews?d=yIl2AUoC8zA" border="0"&gt;&lt;/img&gt;&lt;/a&gt;
&lt;/div&gt;&lt;img src="http://feeds.feedburner.com/~r/JoomlaSecurityNews/~4/QLis4AG_-cs" height="1" width="1"/&gt;</description>
			<author>dextercowley@gmail.com (Mark Dexter)</author>
			<category>Core Security</category>
			<pubDate>Fri, 23 Apr 2010 17:27:34 +0000</pubDate>
		<feedburner:origLink>http://developer.joomla.org/security/news/310-20100423-core-installer-migration-script.html</feedburner:origLink></item>
		<item>
			<title>[20100423] - Core - Sessation Fixation</title>
			<link>http://feeds.joomla.org/~r/JoomlaSecurityNews/~3/KWB_pRZpcP4/309-20100423-core-sessation-fixation.html</link>
			<guid isPermaLink="false">http://developer.joomla.org/security/news/309-20100423-core-sessation-fixation.html</guid>
			<description>&lt;ul&gt;
 &lt;li&gt;&lt;strong&gt;Project:&lt;/strong&gt; Joomla!&lt;/li&gt;
 &lt;li&gt;&lt;strong&gt;SubProject:&lt;/strong&gt; All&lt;/li&gt;
 &lt;li&gt;&lt;strong&gt;Severity: &lt;/strong&gt;Moderate&lt;/li&gt;
 &lt;li&gt;&lt;strong&gt;Versions:&lt;/strong&gt; 1.5.15 and all previous 1.5 releases&lt;/li&gt;
 &lt;li&gt;&lt;strong&gt;Exploit type:&lt;/strong&gt; Session fixation&lt;/li&gt;
 &lt;li&gt;&lt;strong&gt;Reported Date:&lt;/strong&gt; 2010-Mar-25&lt;/li&gt;
 &lt;li&gt;&lt;strong&gt;Fixed Date:&lt;/strong&gt; 2010-Apr-23&lt;/li&gt;
&lt;/ul&gt;
&lt;h2&gt;Description&lt;/h2&gt;
&lt;p&gt;Session id doesn't get modified when user logs in. &amp;nbsp;A remote site may be able to forward a visitor to the Joomla! site and set a specific cookie. &amp;nbsp;If the user then logs in, the remote site can use that cookie to authenticate as that user.&lt;/p&gt;
&lt;h2&gt;Affected Installs&lt;/h2&gt;
&lt;p&gt;All 1.5.x installs prior to and including 1.5.15 are affected.&lt;/p&gt;
&lt;h2&gt;Solution&lt;/h2&gt;
&lt;p&gt;Upgrade to the latest Joomla! version (1.5.16 or later)&lt;/p&gt;
&lt;p&gt;Reported by&amp;nbsp;Raúl Siles and&amp;nbsp;Steven Pignataro&lt;/p&gt;
&lt;p&gt;
&lt;meta http-equiv="content-type" content="text/html; charset=utf-8" /&gt;&lt;/p&gt;
&lt;h2&gt;Contact&lt;/h2&gt;
&lt;p&gt;The JSST at the &lt;a title="Contact the JSST" href="http://developer.joomla.org/security.html"&gt;Joomla! Security Center&lt;/a&gt;.&lt;a class="contentpagetitle" href="http://developer.joomla.org/../../../../security/news/308-20100423-core-password-reset-tokens.html"&gt;[20100423] - Core - Password Reset Tokens&lt;/a&gt;&lt;/p&gt;&lt;div class="feedflare"&gt;
&lt;a href="http://feeds.joomla.org/~ff/JoomlaSecurityNews?a=KWB_pRZpcP4:YPBfJesr9wI:yIl2AUoC8zA"&gt;&lt;img src="http://feeds.feedburner.com/~ff/JoomlaSecurityNews?d=yIl2AUoC8zA" border="0"&gt;&lt;/img&gt;&lt;/a&gt;
&lt;/div&gt;&lt;img src="http://feeds.feedburner.com/~r/JoomlaSecurityNews/~4/KWB_pRZpcP4" height="1" width="1"/&gt;</description>
			<author>dextercowley@gmail.com (Mark Dexter)</author>
			<category>Core Security</category>
			<pubDate>Fri, 23 Apr 2010 17:22:05 +0000</pubDate>
		<feedburner:origLink>http://developer.joomla.org/security/news/309-20100423-core-sessation-fixation.html</feedburner:origLink></item>
		<item>
			<title>[20100423] - Core - Password Reset Tokens</title>
			<link>http://feeds.joomla.org/~r/JoomlaSecurityNews/~3/UdLK-p0f7tQ/308-20100423-core-password-reset-tokens.html</link>
			<guid isPermaLink="false">http://developer.joomla.org/security/news/308-20100423-core-password-reset-tokens.html</guid>
			<description>&lt;ul&gt;
 &lt;li&gt;&lt;strong&gt;Project:&lt;/strong&gt; Joomla!&lt;/li&gt;
 &lt;li&gt;&lt;strong&gt;SubProject:&lt;/strong&gt; All&lt;/li&gt;
 &lt;li&gt;&lt;strong&gt;Severity: &lt;/strong&gt;Low&lt;/li&gt;
 &lt;li&gt;&lt;strong&gt;Versions:&lt;/strong&gt; 1.5.15 and all previous 1.5 releases&lt;/li&gt;
 &lt;li&gt;&lt;strong&gt;Exploit type:&lt;/strong&gt; Unauthorised Access&lt;/li&gt;
 &lt;li&gt;&lt;strong&gt;Reported Date:&lt;/strong&gt; 2010-Jan-07&lt;/li&gt;
 &lt;li&gt;&lt;strong&gt;Fixed Date:&lt;/strong&gt; 2010-Apr-23&lt;/li&gt;
&lt;/ul&gt;
&lt;h2&gt;Description&lt;/h2&gt;
&lt;p&gt;When a user requests a password reset, the reset tokens were stored in plain text in the database. While this is not a vulnerability in itself, it allows user accounts to be compromised if there is an extension on the site with an SQL injection vulnerability.&lt;/p&gt;
&lt;h2&gt;Affected Installs&lt;/h2&gt;
&lt;p&gt;All 1.5.x installs prior to and including 1.5.15 are affected.&lt;/p&gt;
&lt;h2&gt;Solution&lt;/h2&gt;
&lt;p&gt;Upgrade to the latest Joomla! version (1.5.16 or later)&lt;/p&gt;
&lt;p&gt;Reported by Madis Abel&lt;/p&gt;
&lt;h2&gt;Contact&lt;/h2&gt;
&lt;p&gt;The JSST at the &lt;a title="Contact the JSST" href="http://developer.joomla.org/security.html"&gt;Joomla! Security Center&lt;/a&gt;.&lt;/p&gt;&lt;div class="feedflare"&gt;
&lt;a href="http://feeds.joomla.org/~ff/JoomlaSecurityNews?a=UdLK-p0f7tQ:a7Rqlg8nRSY:yIl2AUoC8zA"&gt;&lt;img src="http://feeds.feedburner.com/~ff/JoomlaSecurityNews?d=yIl2AUoC8zA" border="0"&gt;&lt;/img&gt;&lt;/a&gt;
&lt;/div&gt;&lt;img src="http://feeds.feedburner.com/~r/JoomlaSecurityNews/~4/UdLK-p0f7tQ" height="1" width="1"/&gt;</description>
			<author>dextercowley@gmail.com (Mark Dexter)</author>
			<category>Core Security</category>
			<pubDate>Fri, 23 Apr 2010 00:00:00 +0000</pubDate>
		<feedburner:origLink>http://developer.joomla.org/security/news/308-20100423-core-password-reset-tokens.html</feedburner:origLink></item>
		<item>
			<title>[20091103] - Core - Front-End Editor Issue</title>
			<link>http://feeds.joomla.org/~r/JoomlaSecurityNews/~3/DZ3tAwNXHSo/305-20091103-core-front-end-editor-issue-.html</link>
			<guid isPermaLink="false">http://developer.joomla.org/security/news/305-20091103-core-front-end-editor-issue-.html</guid>
			<description>&lt;ul&gt;
 &lt;li&gt;&lt;strong&gt;Project:&lt;/strong&gt; Joomla!&lt;/li&gt;
 &lt;li&gt;&lt;strong&gt;SubProject:&lt;/strong&gt; com_content&lt;/li&gt;
 &lt;li&gt;&lt;strong&gt;Severity:&lt;/strong&gt; Moderate&lt;/li&gt;
 &lt;li&gt;&lt;strong&gt;Versions:&lt;/strong&gt; 1.5.14 and all previous 1.5 releases&lt;/li&gt;
 &lt;li&gt;&lt;strong&gt;Exploit type:&lt;/strong&gt; Front-End Editing&lt;/li&gt;
 &lt;li&gt;&lt;strong&gt;Reported Date:&lt;/strong&gt; 2009-September-05&lt;/li&gt;
 &lt;li&gt;&lt;strong&gt;Fixed Date:&lt;/strong&gt; 2009-November-03&lt;/li&gt;
&lt;/ul&gt;
&lt;h2&gt;Description&lt;/h2&gt;
&lt;p&gt;When logged into the front end with Author access, it was possible to replace an article written by another user.&lt;/p&gt;
&lt;h2&gt;Affected Installs&lt;/h2&gt;
&lt;p&gt;All 1.5.x installs prior to and including 1.5.14 are affected.&lt;/p&gt;
&lt;h2&gt;Solution&lt;/h2&gt;
&lt;p&gt;Upgrade to latest Joomla! version (1.5.15 or newer).&lt;/p&gt;
&lt;p&gt;Reported by Hannes Papenberg&lt;/p&gt;
&lt;h2&gt;Contact&lt;/h2&gt;
&lt;p&gt;The JSST at the &lt;a title="Contact the JSST" href="http://developer.joomla.org/security.html"&gt;Joomla! Security Center&lt;/a&gt;.&lt;/p&gt;&lt;div class="feedflare"&gt;
&lt;a href="http://feeds.joomla.org/~ff/JoomlaSecurityNews?a=DZ3tAwNXHSo:B436pLe8VbA:yIl2AUoC8zA"&gt;&lt;img src="http://feeds.feedburner.com/~ff/JoomlaSecurityNews?d=yIl2AUoC8zA" border="0"&gt;&lt;/img&gt;&lt;/a&gt;
&lt;/div&gt;&lt;img src="http://feeds.feedburner.com/~r/JoomlaSecurityNews/~4/DZ3tAwNXHSo" height="1" width="1"/&gt;</description>
			<author>dextercowley@gmail.com (Mark Dexter)</author>
			<category>Core Security</category>
			<pubDate>Tue, 03 Nov 2009 16:31:02 +0000</pubDate>
		<feedburner:origLink>http://developer.joomla.org/security/news/305-20091103-core-front-end-editor-issue-.html</feedburner:origLink></item>
	</channel>
</rss>
