SSCHADV2012-014 - Joomla 2.5.6 Multiple Cross-site scripting vulnerabilities
Advisory:
|
Joomla 2.5.6 Multiple Cross-site scripting vulnerabilities
|
Advisory ID:
|
SSCHADV2012-014
|
Author:
|
Stefan Schurtz
|
Affected Software:
|
Successfully tested on Joomla 2.5.6
|
Vendor URL:
|
|
Vendor Status:
|
fixed
|
======================
Vulnerability Description
======================
Vulnerability Description
======================
With activated "Module Language Switcher – position-4" (Extensions -> Modules -> Module Manager: Module Language Switcher), multiple XSS are possible.