Cross-site scripting (XSS) vulnerability in the Googlemaps plugin before 3.1 for Joomla!.
The product does not neutralize or incorrectly neutralizes user-controllable input before it is placed in output that is used as a web page that is served to other users.
Link | Tags |
---|---|
http://www.mapsplugin.com/Google-Maps/Documentation-of-plugin-Googlemap/security-release-3-1-of-plugin-googlemaps.html | url repurposed release notes vendor advisory |
http://securityvulns.ru/docs29645.html | third party advisory |
http://www.openwall.com/lists/oss-security/2015/02/26/11 | third party advisory mailing list |