Cross-site scripting (XSS) vulnerability in the Drupal 4.7 Search Keywords module before 1.15 2006/09/15 allows remote attackers to inject arbitrary web script or HTML via unspecified vectors related to lack of validation on output.
Name | Vendor | Start Version | End Version |
---|---|---|---|
Search_keyword_module | Drupal | * | 1.15 (including) |
Search_keyword_module | Drupal | 1.12 (including) | 1.12 (including) |
Search_keyword_module | Drupal | 1.13 (including) | 1.13 (including) |
Search_keyword_module | Drupal | 1.14 (including) | 1.14 (including) |