Total vulnerabilities in the database
Joomla! before 1.0.11 omits some checks for whether _VALID_MOS is defined, which allows attackers to have an unknown impact, possibly resulting in PHP remote file inclusion.
CVSS v2:
No CWE or OWASP classifications available.