Page 2 of 6 results (0.001 seconds)

CVSS: 4.3EPSS: 0%CPEs: 1EXPL: 0

Cross-site scripting (XSS) vulnerability in the Content Analysis module before 6.x-1.7 for Drupal allows remote attackers to inject arbitrary web script or HTML via unspecified vectors, which are not properly handled in a log message. Vulnerabilidad de XSS en el módulo Content Analysis anterior a 6.x-1.7 para Drupal permite a atacantes remotos inyectar secuencias de comandos web arbitrarios o HTML a través de vectores no especificados, lo que no se manejan correctamente en un mensaje de registro. • http://www.openwall.com/lists/oss-security/2015/01/29/6 http://www.securityfocus.com/bid/72119 https://www.drupal.org/node/2407261 https://www.drupal.org/node/2407395 • CWE-79: Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') •