CVE-2015-3389
21.04.2015, 18:59
Cross-site scripting (XSS) vulnerability in the Download counts report page in the Public Download Count module (pubdlcnt) 7.x-1.x-dev and earlier for Drupal allows remote authenticated users to inject arbitrary web script or HTML via unspecified vectors.
Vendor | Product | Version |
---|---|---|
public_download_count_project | public_download_count | 𝑥 ≤ 7.x-1.x-dev |
𝑥
= Vulnerable software versions
References