CVE-2014-1837
30.01.2014, 19:55
Cross-site scripting (XSS) vulnerability in the StackIdeas Komento (com_komento) component before 1.7.4 for Joomla! allows remote attackers to inject arbitrary web script or HTML via vectors related to "checking new comments."
| Vendor | Product | Version | 
|---|---|---|
| stackideas | komento | 𝑥 ≤ 1.7.3 | 
| stackideas | komento | 1.7.0 | 
| stackideas | komento | 1.7.1 | 
| stackideas | komento | 1.7.2 | 
𝑥
= Vulnerable software versions
References