Description
Cross-site scripting (XSS) vulnerability in modules/mod_languages/tmpl/default.php in the Language Switcher module for Joomla! 2.5.x before 2.5.7 allows remote attackers to inject arbitrary web script or HTML via the PATH_INFO to index.php. NOTE: some of these details are obtained from third party information.
Remediation
References
Related Vulnerabilities
Java Unspesificed Vulnerability (CVE-2018-3149)
WordPress Plugin Contact Form 7 Style Cross-Site Request Forgery (3.2)
WordPress Plugin NextGEN Pro Cross-Site Scripting (3.1.9)
PostgreSQL Resource Management Errors Vulnerability (CVE-2007-4772)
MyBB Exposure of Sensitive Information to an Unauthorized Actor Vulnerability (CVE-2012-2327)