LOW
Cross-site scripting (XSS) vulnerability in the EU Cookie Compliance module 7.x-1.x before 7.x-1.12 for Drupal allows remote authenticated administrators with the "Administer EU Cookie Compliance popup" permission to inject arbitrary web script or HTML via unspecified configuration values
Published Apr 29, 2014
2.1
LOWCVSS 2.0
EPSS 0.94%
Description
Affected products
Remediation
References (5)
Change history (0)
No recorded changes yet.