CVE-2006-6832: XSS
Published Dec 31, 2006
·Updated
Cross-site scripting (XSS) vulnerability in Joomla! before 1.0.12 allows remote attackers to inject arbitrary web script or HTML via unspecified vectors, possibly related to poll.php or the module title.
Affected Software
11 affected components
Joomla joomla=1.0
Joomla joomla=1.0.1
Joomla joomla=1.0.2
Joomla joomla=1.0.3
Joomla joomla=1.0.4
Joomla joomla=1.0.5
Joomla joomla=1.0.7
Joomla joomla=1.0.8
Joomla joomla=1.0.9
Joomla joomla=1.0.10
Joomla joomla=1.0.11
Remediation
Patch Available
Event History
Dec 31, 2006
CVE Published
05:00 AM
Data Sourced
via NVD·05:00 AM
RemedyDescriptionSeverityWeaknessAffected Software
Jan 2, 2007
CVE Published
via MITRE·04:00 AM
Data Sourced
via MITRE·04:00 AM
Description
Frequently Asked Questions
1
What is the severity of CVE-2006-6832?
CVE-2006-6832 is classified as a moderate severity cross-site scripting (XSS) vulnerability.
2
How do I fix CVE-2006-6832?
To fix CVE-2006-6832, upgrade Joomla! to version 1.0.12 or later.
3
Which Joomla! versions are affected by CVE-2006-6832?
CVE-2006-6832 affects all Joomla! versions prior to 1.0.12.
4
What type of attack is possible due to CVE-2006-6832?
CVE-2006-6832 allows remote attackers to inject arbitrary web scripts or HTML into web pages.
5
Are there specific vectors associated with CVE-2006-6832?
CVE-2006-6832 may be related to vulnerabilities in poll.php or the module title.