Joomla! Simple Video Flash Player Module Two Cross-Site Scripting Vulnerabilities

SECUNIA ADVISORY ID:
SA50016

VERIFY ADVISORY:
Secunia.com
http://secunia.com/advisories/50016/
Customer Area (Credentials Required)
https://ca.secunia.com/?page=viewadvisory&vuln_id=50016

RELEASE DATE:
2012-07-31
DESCRIPTION:
Two vulnerabilities have been discovered in the Simple Video Flash
Player for Joomla!, which can be exploited by malicious people to
conduct cross-site scripting attacks.

The vulnerabilities are caused due to the module bundling a
vulnerable version of JW Player.

For more information:
SA49130

The vulnerabilities are confirmed in version 1.6.5. Other versions
may also be affected.

SOLUTION:
No official solution is currently available.

ORIGINAL ADVISORY:
MustLive:
http://websecurity.com.ua/5988/

RECENT ARTICLE

RECENT POST