CVE-2016-1913
15.01.2016, 20:59
Multiple cross-site scripting (XSS) vulnerabilities in the Redhen module 7.x-1.x before 7.x-1.11 for Drupal allow remote authenticated users with certain access to inject arbitrary web script or HTML via unspecified vectors, related to (1) individual contacts, (2) notes, or (3) engagement scores.
| Vendor | Product | Version |
|---|---|---|
| redhen_project | redhen | 7.x-1.0:x |
| redhen_project | redhen | 7.x-1.0:x |
| redhen_project | redhen | 7.x-1.0:x |
| redhen_project | redhen | 7.x-1.0:x |
| redhen_project | redhen | 7.x-1.0:x |
| redhen_project | redhen | 7.x-1.0:x |
| redhen_project | redhen | 7.x-1.0:x |
| redhen_project | redhen | 7.x-1.1:x |
| redhen_project | redhen | 7.x-1.2:x |
| redhen_project | redhen | 7.x-1.3:x |
| redhen_project | redhen | 7.x-1.4:x |
| redhen_project | redhen | 7.x-1.5:x |
| redhen_project | redhen | 7.x-1.6:x |
| redhen_project | redhen | 7.x-1.7:x |
| redhen_project | redhen | 7.x-1.8:x |
| redhen_project | redhen | 7.x-1.10:x |
| redhen_project | redhen | 7.x-1.x:x |
𝑥
= Vulnerable software versions