Back to search
CVE-2012-1060
Published: Feb 14, 2012
Modified: Sep 16, 2024
PUBLISHED
Description
Multiple cross-site scripting (XSS) vulnerabilities in revisioning_theme.inc in the Taxonomy module in the Revisioning module 6.x-3.13 and other versions before 6.x-3.14 for Drupal allow remote authenticated users with certain privileges to inject arbitrary web script or HTML via the (1) tags or (2) term parameters.
| Vendor | Product | Versions |
|---|---|---|
n/a | n/a | affected n/a |
References
http://drupalcode.org/project/revisioning.git/commit/768c882
x_refsource_CONFIRM
47931
third-party-advisory
x_refsource_SECUNIA
http://drupal.org/node/1433550
x_refsource_CONFIRM
51923
vdb-entry
x_refsource_BID
http://drupal.org/node/1431114
x_refsource_CONFIRM
Security Training
Train your team to recognize and prevent security threats with our comprehensive security awareness program.
Start TrainingVulnerability Scanning
Discover vulnerabilities in your applications and infrastructure before attackers do.
Scan Now