CVE-2015-4370
15.06.2015, 14:59
Cross-site scripting (XSS) vulnerability in the Site Documentation module before 6.x-1.5 for Drupal allows remote authenticated users with certain permissions to inject arbitrary web script or HTML via vectors related to taxonomy terms.
Vendor | Product | Version |
---|---|---|
site_documentation_project | site_documentation | 𝑥 ≤ 6.x-1.4 |
𝑥
= Vulnerable software versions
References