First published: Fri Apr 21 2006(Updated: )
The com_rss option (rss.php) in (1) Mambo and (2) Joomla! allows remote attackers to cause a denial of service (disk consumption and possibly web-server outage) via multiple requests with different values of the feed parameter.
Credit: cve@mitre.org cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Joomla | ||
Mambo |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2006-1957 is considered a medium severity vulnerability due to its potential to cause denial of service through disk consumption.
To fix CVE-2006-1957, it is recommended to limit the request rate or filter incoming requests to the com_rss option.
CVE-2006-1957 affects both Mambo and Joomla! software platforms.
CVE-2006-1957 allows attackers to launch a denial of service attack targeting disk space and potentially causing web server outages.
The com_rss component in the rss.php file is the vulnerable part of Joomla! and Mambo in CVE-2006-1957.