Security Advisory
CVE-2006-0114
CVE vulnerability detail — eXtreme Datacenter Security Operations
Description
The vCard functions in Joomla! 1.0.5 use predictable sequential IDs for vcards and do not restrict access to them, which allows remote attackers to obtain valid e-mail addresses to conduct spam attacks by modifying the contact_id parameter to index2.php.