Security Advisory

CVE-2012-1060

CVE vulnerability detail - eXtreme Datacenter Security Operations

Published 2012-02-14 00:00:00
Last updated 2024-09-16 19:24:24
Assigner mitre
CVSS score not scored
State PUBLISHED

Description

Multiple cross-site scripting (XSS) vulnerabilities in revisioning_theme.inc in the Taxonomy module in the Revisioning module 6.x-3.13 and other versions before 6.x-3.14 for Drupal allow remote authenticated users with certain privileges to inject arbitrary web script or HTML via the (1) tags or (2) term parameters.