CVE-2014-1611
30.01.2014, 18:55
Cross-site scripting (XSS) vulnerability in the Anonymous Posting module 7.x-1.2 and 7.x-1.3 for Drupal allows remote attackers to inject arbitrary web script or HTML via the contact name field.
Vendor | Product | Version |
---|---|---|
anonymous_posting_project | anonymous_posting | 7.x-1.2:x |
anonymous_posting_project | anonymous_posting | 7.x-1.3:x |
𝑥
= Vulnerable software versions
References