Логотип exploitDog
bind:CVE-2012-2705
Консоль
Логотип exploitDog

exploitDog

bind:CVE-2012-2705

Количество 2

Количество 2

nvd логотип

CVE-2012-2705

почти 13 лет назад

The filter_titles function in the Smart Breadcrumb module 6.x-1.x before 6.x-1.3 for Drupal does not properly convert a title to plain-text, which allows remote authenticated users with create or edit node permissions to conduct cross-site scripting (XSS) attacks via the title parameter.

CVSS2: 2.1
EPSS: Низкий
github логотип

GHSA-42fx-xh6m-j2c4

около 3 лет назад

The filter_titles function in the Smart Breadcrumb module 6.x-1.x before 6.x-1.3 for Drupal does not properly convert a title to plain-text, which allows remote authenticated users with create or edit node permissions to conduct cross-site scripting (XSS) attacks via the title parameter.

EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
nvd логотип
CVE-2012-2705

The filter_titles function in the Smart Breadcrumb module 6.x-1.x before 6.x-1.3 for Drupal does not properly convert a title to plain-text, which allows remote authenticated users with create or edit node permissions to conduct cross-site scripting (XSS) attacks via the title parameter.

CVSS2: 2.1
0%
Низкий
почти 13 лет назад
github логотип
GHSA-42fx-xh6m-j2c4

The filter_titles function in the Smart Breadcrumb module 6.x-1.x before 6.x-1.3 for Drupal does not properly convert a title to plain-text, which allows remote authenticated users with create or edit node permissions to conduct cross-site scripting (XSS) attacks via the title parameter.

0%
Низкий
около 3 лет назад

Уязвимостей на страницу