CVE-2006-1029: XSS
The cross-site scripting (XSS) countermeasures in class.inputfilter.php in Joomla! 1.0.7 allow remote attackers to cause a denial of service via a crafted mosmsg parameter to index.php with a malformed sequence of multiple tags, as demonstrated using "<<>AAA<><>", possibly due to nested or empty tags.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2006-1029?
CVE-2006-1029 has been classified as a moderate severity vulnerability due to its potential for denial of service.
How do I fix CVE-2006-1029?
To fix CVE-2006-1029, it is recommended to upgrade to a patched version of Joomla! that addresses the XSS countermeasures.
What software versions are impacted by CVE-2006-1029?
CVE-2006-1029 specifically affects Joomla! version 1.0.7.
Can CVE-2006-1029 be exploited without authentication?
Yes, CVE-2006-1029 can be exploited by remote attackers without requiring authentication.
What type of attack is associated with CVE-2006-1029?
CVE-2006-1029 is associated with cross-site scripting (XSS) and denial of service attacks.