Vulnerabilities > CVE-2006-6833 - Cross-Site Scripting vulnerability in Joomla

047910
CVSS 7.5 - HIGH
Attack vector
NETWORK
Attack complexity
LOW
Privileges required
NONE
Confidentiality impact
PARTIAL
Integrity impact
PARTIAL
Availability impact
PARTIAL
network
low complexity
joomla
nessus

Summary

com_categories in Joomla! before 1.0.12 does not validate input, which has unknown impact and remote attack vectors.

Nessus

NASL familyFreeBSD Local Security Checks
NASL idFREEBSD_PKG_7BB127C1A5AA11DB9DDC0011098B2F36.NASL
descriptionSecunia reports : Some vulnerabilities have been reported in Joomla!, where some have unknown impacts and one can be exploited by malicious people to conduct cross-site scripting attacks. - Input passed to an unspecified parameter is not properly sanitised before being returned to the user. This can be exploited to execute arbitrary HTML and script code in a user
last seen2020-06-01
modified2020-06-02
plugin id24227
published2007-01-18
reporterThis script is Copyright (C) 2007-2019 and is owned by Tenable, Inc. or an Affiliate thereof.
sourcehttps://www.tenable.com/plugins/nessus/24227
titleFreeBSD : joomla -- multiple remote vulnerabilities (7bb127c1-a5aa-11db-9ddc-0011098b2f36)