Lucene search

K
cvelistMitreCVELIST:CVE-2014-5022
HistoryOct 03, 2022 - 4:20 p.m.

CVE-2014-5022

2022-10-0316:20:44
mitre
www.cve.org
8
cve-2014-5022
cross-site scripting
drupal 7.x

EPSS

0.001

Percentile

46.0%

Cross-site scripting (XSS) vulnerability in the Ajax system in Drupal 7.x before 7.29 allows remote attackers to inject arbitrary web script or HTML via vectors involving forms with an Ajax-enabled textfield and a file field.

EPSS

0.001

Percentile

46.0%