Cross-site scripting (XSS) vulnerability in Google Mini Search Appliance, and possibly Google Search Appliance, allows remote malicious users to inject arbitrary Javascript, and possibly other web script or HTML, via a proxystylesheet variable that contains a malicious XSLT style sheet.
Vulnerable Product | Search on Vulmon | Subscribe to Product |
---|---|---|
google mini search appliance |
||
google search appliance |