CVE-2012-4532

Vulnérabilités

CVE-2012-4532

Cross-site scripting (XSS) vulnerability in modules/mod_languages/tmpl/default.php in the Language Switcher module for Joomla!

MEDIUM Joomla CMS

Cross-site scripting (XSS) vulnerability in modules/mod_languages/tmpl/default.php in the Language Switcher module for Joomla! 2.5.x before 2.5.7 allows remote attackers to inject arbitrary web script or HTML via the PATH_INFO to index.php. NOTE: some of these details are obtained from third party information.

4.3 Moyenne · CVSS 2.0

AV:N/AC:M/Au:N/C:N/I:P/A:N

Score retenu : NVD

SourceSévérité d'origineCVSS
NVDMEDIUM 4.3 (v2.0)
Produit
Joomla CMS
Corrigée dans
Non précisée
Publiée
31/10/2012
Modifiée
16/06/2026
CWE
CWE-79
  • 2.5.0 – 2.5.0
  • 2.5.1 – 2.5.1
  • 2.5.2 – 2.5.2
  • 2.5.3 – 2.5.3
  • 2.5.4 – 2.5.4
  • 2.5.5 – 2.5.5
  • 2.5.6 – 2.5.6

Ces informations proviennent des sources ci-dessus ; CVE Oyer n'y ajoute aucune interprétation.

  1. Détectée via nvd26/09/2026 09:34 UTC