Vulnerability   
Search   
    Search 324607 CVE descriptions
and 145615 test descriptions,
access 10,000+ cross references.
Tests   CVE   All  

CVE ID:CVE-2017-5673
Description:In the Kunena extension 5.0.2 through 5.0.4 for Joomla!, the forum message subject (aka topic subject) accepts JavaScript, leading to XSS. Six files are affected: crypsis/layouts/message/item/default.php, crypsis/layouts/message/item/top/default.php, crypsis/layouts/message/item/bottom/default.php, crypsisb3/layouts/message/item/default.php, crypsisb3/layouts/message/item/top/default.php, and crypsisb3/layouts/message/item/bottom/default.php. This is fixed in 5.0.5.
Test IDs: 1.3.6.1.4.1.25623.1.0.108106  
Cross References: Common Vulnerability Exposure (CVE) ID: CVE-2017-5673
BugTraq ID: 101677
http://www.securityfocus.com/bid/101677
http://www.fox.ra.it/technical-articles/kunena-vulnerability-2017-01.html




© 1998-2025 E-Soft Inc. All rights reserved.