VYPR
Unrated severityNVD Advisory· Published Oct 18, 2007· Updated Apr 23, 2026

CVE-2007-5577

CVE-2007-5577

Description

Multiple cross-site scripting (XSS) vulnerabilities in Joomla! before 1.0.13 (aka Sunglow) allow remote attackers to inject arbitrary web script or HTML via the (1) Title or (2) Section Name form fields in the Section Manager component, or (3) multiple unspecified fields in New Menu Item.

Affected products

1
  • cpe:2.3:a:joomla:joomla\!:*:*:*:*:*:*:*:*
    Range: <1.0.13

Patches

0

No patches discovered yet.

Vulnerability mechanics

AI mechanics synthesis has not run for this CVE yet.

References

7

News mentions

0

No linked articles in our index yet.