CVE-2012-1659
Published Sep 18, 2012Cross-site scripting (XSS) vulnerability in the Node Recommendation module 6.x-1.x before 6.x-1.1 for Drupal allows remote authenticated users with certain permissions to inject a…
Vendor archive
2 CVEs tagged to vendor ariel_barreiro — 0 Critical, 0 High, 1 Medium, 1 Low, 0 Unrated.
Cross-site scripting (XSS) vulnerability in the Node Recommendation module 6.x-1.x before 6.x-1.1 for Drupal allows remote authenticated users with certain permissions to inject a…
The Meta tags (aka Nodewords) module before 6.x-1.1 for Drupal does not properly follow permissions during assignment of node meta tags, which allows remote attackers to obtain se…