CVE-2013-1906
24.06.2013, 16:55
Cross-site scripting (XSS) vulnerability in the Rules module 7.x-2.x before 7.x-2.3 for Drupal allows remote authenticated users with the "administer rules" permission to inject arbitrary web script or HTML via a rule tag.
Vendor | Product | Version |
---|---|---|
wolfgang_ziegler | rules | 7.x-2.0:x |
wolfgang_ziegler | rules | 7.x-2.0-beta1:x |
wolfgang_ziegler | rules | 7.x-2.0-beta2:x |
wolfgang_ziegler | rules | 7.x-2.0-beta3:x |
wolfgang_ziegler | rules | 7.x-2.0-rc1:x |
wolfgang_ziegler | rules | 7.x-2.0-rc2:x |
wolfgang_ziegler | rules | 7.x-2.1:x |
wolfgang_ziegler | rules | 7.x-2.2:x |
𝑥
= Vulnerable software versions