1 results (0.005 seconds)

CVSS: 4.3EPSS: 0%CPEs: 2EXPL: 0

Cross-site scripting (XSS) vulnerability in the stock quotes page in Stock 6.x before 6.x-1.0, a module for Drupal, allows remote attackers to inject arbitrary web script or HTML via unspecified vectors. Vulnerabilidad de secuencias de comandos en sitios cruzados (XSS) en la página stock quotes en Stock 6.x antes de 6.x-1.0, un módulo para Drupal, permite a atacantes remotos inyectar secuencias de comandos web o HTML mediante vectores no especificados. • http://drupal.org/node/312923 http://www.securityfocus.com/bid/31389 https://exchange.xforce.ibmcloud.com/vulnerabilities/45405 • CWE-79: Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') •