Joomla Improper Neutralization of Input During Web Page Generation (Cross-site Scripting) Vulnerability - CVE-2017-7986 - Vulnerability Database
Joomla Improper Neutralization of Input During Web Page Generation (Cross-site Scripting) Vulnerability - CVE-2017-7986
Medium
Reference:
CVE-2017-7986
Title:
Joomla Improper Neutralization of Input During Web Page Generation (Cross-site Scripting) Vulnerability
Overview:
In Joomla 1.5.0 through 3.6.5 (fixed in 3.7.0) inadequate filtering of specific HTML attributes leads to XSS vulnerabilities in various components.