TROYANOSYVIRUS
Voltar para CVEs

CVE-2013-0322

N/A

Descricao

Cross-site scripting (XSS) vulnerability in Views in the Ubercart module 7.x-3.x before 7.x-3.4 for Drupal allows remote attackers to inject arbitrary web script or HTML via the full name field.

Detalhes CVE

Pontuacao CVSS v3.1N/A
Publicado3/27/2013
Ultima modificacao4/29/2026
Fontenvd
Avistamentos honeypot0

Produtos afetados

drupal:drupalubercart:ubercart

Fraquezas (CWE)

CWE-79

Referencias

http://drupal.org/node/1922136(secalert@redhat.com)
http://drupal.org/node/1922418(secalert@redhat.com)
http://drupal.org/node/1922136(af854a3a-2127-422b-91ae-364da2661108)
http://drupal.org/node/1922418(af854a3a-2127-422b-91ae-364da2661108)
http://secunia.com/advisories/52298(af854a3a-2127-422b-91ae-364da2661108)
http://www.openwall.com/lists/oss-security/2013/02/21/5(af854a3a-2127-422b-91ae-364da2661108)

Correlacoes IOC

Sem correlacoes registradas

This product uses data from the NVD API but is not endorsed or certified by the NVD.