TROYANOSYVIRUS
Zuruck zu CVEs

CVE-2015-4388

N/A

Beschreibung

Cross-site scripting (XSS) vulnerability in the Current Search Links module 7.x-1.x before 7.x-1.1 for Drupal, when the "Append the keywords passed by the user to the list" option is disabled, allows remote attackers to inject arbitrary web script or HTML via a crafted search query.

CVE Details

CVSS v3.1 BewertungN/A
Veroffentlicht6/15/2015
Zuletzt geandert4/12/2025
Quellenvd
Honeypot-Sichtungen0

Betroffene Produkte

current_search_links_project:current_search_links

Schwachen (CWE)

CWE-79

Referenzen

IOC Korrelationen

Keine Korrelationen erfasst

This product uses data from the NVD API but is not endorsed or certified by the NVD.