CVE-2015-4356
15.06.2015, 14:59
Cross-site scripting (XSS) vulnerability in the view-based webform results table in the Webform module 7.x-4.x before 7.x-4.4 for Drupal allows remote authenticated users with certain permissions to inject arbitrary web script or HTML via a webform.
Vendor | Product | Version |
---|---|---|
webform_project | webform | 7.x-4.0:x |
webform_project | webform | 7.x-4.1:x |
webform_project | webform | 7.x-4.2:x |
webform_project | webform | 7.x-4.3:x |
𝑥
= Vulnerable software versions
References