HomeDefault status
unaffected
5.0.0-6.0.2
affected
Description
Various stored XSS vulnerabilities in the maps- and icon rendering logic in Phoca Maps component 5.0.0-6.0.2 have been discovered.
Problem types
CWE-79 Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')
Product status
5.0.0-6.0.2
Credits
Felipe Monteiro
Leandro Vallim
References
phoca.cz/