lists  /  announce  owl-users  owl-dev  john-users  john-dev  passwdqc-users  yescrypt  popa3d-users  /  oss-security  kernel-hardening  musl  sabotage  tlsify  passwords  /  crypt-dev  xvendor  /  Bugtraq  Full-Disclosure  linux-kernel  linux-netdev  linux-ext4  linux-hardening  linux-cve-announce  PHC 
Open Source and information security mailing list archives
Hash Suite: Windows password security audit tool. GUI, reports in PDF.
[<prev] [next>] [<thread-prev] [day] [month] [year] [list]
Date: Fri, 7 Jan 2011 17:31:53 +0800
From: YGN Ethical Hacker Group <>
Subject: Re: Joomla! 1.0.x ~ 1.0.15 | Cross Site Scripting (XSS) Vulnerability

Joomla! Security Team has confirmed that this issue will not be fixed.

>> While noted, your exploit report does not fall within the JSST remit as
>> we no longer support J1.0.x branch (as you are aware and indicate).
>> The vulnerability mentioned is not known to exist in any current supported release.
>> Please ensure you are using the latest version of Joomla!

The advisory has been updated with vendor's response:

The CVE ID, CVE-2011-0005, has been assigned for it.

 Best regards,
 YGN Ethical Hacker Group
 Yangon, Myanmar
 Our Lab |
 Our Directory |

Powered by blists - more mailing lists