1 results (0.014 seconds)

CVSS: 3.5EPSS: 0%CPEs: 2EXPL: 0

Cross-site scripting (XSS) vulnerability in the Taxonomy Grid : Catalog module for Drupal 6.x-1.6 and earlier allows remote authenticated users with certain permissions to inject arbitrary web script or HTML via unspecified vectors. Vulnerabilidad de ejecución de secuencias de comandos en sitios cruzados (XSS) en el módulo Taxonomy Grid : Catalog para Drupal v6.x-1.6 y anteriores, permite a usuarios remotos autenticados con permisos específicos, inyectar secuencias de comandos web o HTML a través de vectores no especificados. • http://drupal.org/node/1557872 http://www.openwall.com/lists/oss-security/2012/05/03/1 http://www.openwall.com/lists/oss-security/2012/05/03/2 http://www.securityfocus.com/bid/53345 https://exchange.xforce.ibmcloud.com/vulnerabilities/75345 • CWE-79: Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') •