Escaping The Joomla Dangers!
23.07.09
I differentiate that, in this day and age, many people need a website for their business. There is one problem though, not every business person knows how to get one. Joomla could potentially be the suffer the consequences of c take to this common problem, and to top it off, it is very user friendly. Joomla is open source so you won't need to pay any scratch, which means you have nothing to lose by giving it a try. The only real risk with regard to Joomla right now is that a vulnerability was recently discovered in it.
You may be wondering why this vulnerability exists. This vulnerability exists due to a changeless TINYMCE editor, which includes a tiny browser plugin.This, enables the uploading of files without authentication. If attackers direct to successfully exploit this weakness then it is highly likely that these online attackers will be able to upload files with multiple extensions as well as deliver arbitrary PHP code.
There is also an issue that exists which is related to files which are missing. The missing files check for JEXEC and unfortunately, run the hazard of being exploited by malicious online attackers. If this is exploited in the correct manner, malicious online attackers can grasp confidential internal patch information.
Source: pc1news