CVE-2014-8075
09.10.2014, 14:55
Cross-site scripting (XSS) vulnerability in the Tribune module 6.x-1.x and 7.x-3.x for Drupal allows remote authenticated users with certain permissions to inject arbitrary web script or HTML via a node title.
Vendor | Product | Version |
---|---|---|
drupal | tribune | 6.x-1.2:x |
drupal | tribune | 6.x-1.13:x |
drupal | tribune | 7.x-3.0:x |
𝑥
= Vulnerable software versions
References