CVE Database
/

CVE-2012-5558

Back to search

CVE-2012-5558

Published: Jan 9, 2020

Modified: Aug 6, 2024

PUBLISHED

Description

Cross-site scripting (XSS) vulnerability in the Smiley module 6.x-1.x versions prior to 6.x-1.1 and Smileys module 6.x-1.x versions prior to 6.x-1.1 for Drupal allows remote authenticated users with the "administer smiley" permission to inject arbitrary web script or HTML via a smiley acronym.

VendorProductVersions

Smiley;Smileys

Smiley

affected
6.x-1.x versions prior to 6.x-1.1

Smiley;Smileys

Smileys

affected
6.x-1.x versions prior to 6.x-1.1

Security Training

Train your team to recognize and prevent security threats with our comprehensive security awareness program.

Start Training

Vulnerability Scanning

Discover vulnerabilities in your applications and infrastructure before attackers do.

Scan Now