Total vulnerabilities in the database
The vCard functions in Joomla! 1.0.5 use predictable sequential IDs for vcards and do not restrict access to them, which allows remote attackers to obtain valid e-mail addresses to conduct spam attacks by modifying the contact_id parameter to index2.php.
Software | From | Fixed in |
---|---|---|
Joomla / joomla | 1.0.5 | 1.0.5.x |