Security announcement for Joomla! 1.5 - XML-RPC issue
Submitted by duvien on Wed, 06/02/2008 - 00:25
After releasing Joomla! 1.5 stable we have discovered a high priority security issue. The vulnerability has been discovered in XML-RPC in combination with the blogger API. There is a security problem in this code that makes it possible to alter the articles on your site (including removal). This problems has been fixed currently by members of the development team and the Joomla! bug squad, solution is now available from Subversion. So what do you need to do until we release Joomla! 1.5.1?
Apart from Joomla!, i think Wordpress has also suffered the same security issue. If you are running Wordpress 2.3.x version, please head over to Wordpress site for an update.






Comments
Awesome
Is there a way to use this awesome plugin to play mp3 in a module position?
I think you have posted your
I think you have posted your comments in the wrong post?.
Anyway, i believe you are talking about loading 1pixelout player v123b into a module. This should actually work, follow these steps:
- create a new custom user module
- in the parameter where it says 'Mambot' select the radio button for 'Yes' and 'no' for the rest of the parameters.
- in your content area (text editor), type in {audio}folder_to_my_mp3s/my_file.mp3{/audio}
That should do the trick.
The above is referring to this post: http://www.duvien.com/onepixelout-player-ported-joomla-10x
Pingback
[...] writing a post about this entry http://www.duvien.com/security-announcement-joomla-15-xml-rpc-issue Stay [...]
Joomla
If I'm honest the best CMS would be ModX I love the thing!
Joomla is my favorite CMS but
Joomla is my favorite CMS but i am beginner thats why i dont understand it :)
Add new comment