Multiple cross-site scripting (XSS) vulnerabilities in (1) index.php or (2) mod.php in Exponent 0.95 allow remote attackers to inject arbitrary web script or HTML via the module parameter.
Name | Vendor | Start Version | End Version |
---|---|---|---|
Exponent | Exponent | 0.95 (including) | 0.95 (including) |