Joomla! XML-RPC Blogger API Unspecified Vulnerability
BID:27719
Info
Joomla! XML-RPC Blogger API Unspecified Vulnerability
| Bugtraq ID: | 27719 |
| Class: | Unknown |
| CVE: |
CVE-2008-1533 |
| Remote: | Yes |
| Local: | No |
| Published: | Feb 06 2008 12:00AM |
| Updated: | Mar 28 2008 02:19PM |
| Credit: | The vendor disclosed this issue. |
| Vulnerable: |
Joomla Joomla 1.5 |
| Not Vulnerable: |
Joomla Joomla 1.5.1 |
Discussion
Joomla! XML-RPC Blogger API Unspecified Vulnerability
Joomla! is prone to an unspecified vulnerability that affects XML-RPC in combination with the blogger API.
Attackers could exploit this issue to modify and delete articles.
Currently, very little is known about this issue. We will update this BID as more information emerges.
This issue affects Joomla! 1.5; other versions may also be vulnerable.
Joomla! is prone to an unspecified vulnerability that affects XML-RPC in combination with the blogger API.
Attackers could exploit this issue to modify and delete articles.
Currently, very little is known about this issue. We will update this BID as more information emerges.
This issue affects Joomla! 1.5; other versions may also be vulnerable.
Exploit / POC
Joomla! XML-RPC Blogger API Unspecified Vulnerability
Attackers may exploit this issue through a browser.
Attackers may exploit this issue through a browser.
Solution / Fix
Joomla! XML-RPC Blogger API Unspecified Vulnerability
Solution:
The vendor released updates to address this issue. Please see the references for more information.
Joomla Joomla 1.5
Solution:
The vendor released updates to address this issue. Please see the references for more information.
Joomla Joomla 1.5
-
Joomla Joomla_1.5.0_to_1.5.1-Stable-Patch_Package.tar.bz2
http://joomlacode.org/gf/download/frsrelease/6694/21850/Joomla_1.5.0_t o_1.5.1-Stable-Patch_Package.tar.bz2
References
Joomla! XML-RPC Blogger API Unspecified Vulnerability
References:
References:
- Security announcement for 1.5 (Joomla!)