Weakness Name | Source | |
---|---|---|
Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') The product does not neutralize or incorrectly neutralizes user-controllable input before it is placed in output that is used as a web page that is served to other users. |
Metrics | Score | Severity | CVSS Vector | Source |
---|---|---|---|---|
V2 | 2.1 | AV:N/AC:H/Au:S/C:N/I:P/A:N | nvd@nist.gov |
Ron_jerome>>Bibliography >> Version 5.x-1.0
Ron_jerome>>Bibliography >> Version 5.x-1.1
Ron_jerome>>Bibliography >> Version 5.x-1.10
Ron_jerome>>Bibliography >> Version 5.x-1.11
Ron_jerome>>Bibliography >> Version 5.x-1.12
Ron_jerome>>Bibliography >> Version 5.x-1.13
Ron_jerome>>Bibliography >> Version 5.x-1.14
Ron_jerome>>Bibliography >> Version 5.x-1.15
Ron_jerome>>Bibliography >> Version 5.x-1.16
Ron_jerome>>Bibliography >> Version 5.x-1.17
Drupal>>Drupal >> Version *
Ron_jerome>>Bibliography >> Version 6.x-1.0
Ron_jerome>>Bibliography >> Version 6.x-1.0
Ron_jerome>>Bibliography >> Version 6.x-1.0
Ron_jerome>>Bibliography >> Version 6.x-1.0
Ron_jerome>>Bibliography >> Version 6.x-1.0
Ron_jerome>>Bibliography >> Version 6.x-1.0
Ron_jerome>>Bibliography >> Version 6.x-1.0-beta1
Ron_jerome>>Bibliography >> Version 6.x-1.0-beta2
Ron_jerome>>Bibliography >> Version 6.x-1.0-beta3
Ron_jerome>>Bibliography >> Version 6.x-1.0-beta4
Ron_jerome>>Bibliography >> Version 6.x-1.0-beta5
Ron_jerome>>Bibliography >> Version 6.x-1.0-beta6
Ron_jerome>>Bibliography >> Version 6.x-1.0-beta7
Ron_jerome>>Bibliography >> Version 6.x-1.0-beta8
Ron_jerome>>Bibliography >> Version 6.x-1.0-beta9
Ron_jerome>>Bibliography >> Version 6.x-1.1
Ron_jerome>>Bibliography >> Version 6.x-1.2
Ron_jerome>>Bibliography >> Version 6.x-1.3
Ron_jerome>>Bibliography >> Version 6.x-1.4
Ron_jerome>>Bibliography >> Version 6.x-1.5
Ron_jerome>>Bibliography >> Version 6.x-1.6
Ron_jerome>>Bibliography >> Version 6.x-1.x-dev
Drupal>>Drupal >> Version *