Description
In Joomla! 3.x before 3.9.12, inadequate escaping allowed XSS attacks using the logo parameter of the default templates.
Remediation
References
Related Vulnerabilities
Drupal Permissions, Privileges, and Access Controls Vulnerability (CVE-2012-1590)
WordPress Plugin Fancy Gallery 'image-upload.php' Arbitrary File Upload (1.2.4)
MySQL CVE-2020-2572 Vulnerability (CVE-2020-2572)
PHP Other Vulnerability (CVE-2007-4528)
WordPress Plugin Calendar Unspecified Vulnerability (1.3.10)