SECUNIA ADVISORY ID:
SA35968
VERIFY ADVISORY:
http://secunia.com/advisories/35968/
DESCRIPTION:
A vulnerability has been discovered in the UIajaxIM component for
Joomla, which can be exploited by malicious users to conduct script
insertion attacks.
The vulnerability is caused due to a vulnerable version of Ajax IM.
For more information:
SA35927
The vulnerability is confirmed in version 1.4. Other versions may
also be affected.
SOLUTION:
Edit the source code to ensure that input is properly sanitised.
Grant only trusted users access to the application.
PROVIDED AND/OR DISCOVERED BY:
599eme Man
ORIGINAL ADVISORY:
http://milw0rm.com/exploits/9244
OTHER REFERENCES:
SA35927:
http://secunia.com/advisories/35927/