Lucene search

K
prionPRIOn knowledge basePRION:CVE-2012-4469
HistoryNov 30, 2012 - 10:55 p.m.

Cross site scripting

2012-11-3022:55:00
PRIOn knowledge base
www.prio-n.com
5

6.2 Medium

AI Score

Confidence

High

0.001 Low

EPSS

Percentile

49.9%

Cross-site scripting (XSS) vulnerability in the Hashcash module 6.x-2.x before 6.x-2.6 and 7.x-2.x before 7.x-2.2 for Drupal, when “Log failed hashcash” is enabled, allows remote attackers to inject arbitrary web script or HTML via an invalid token, which is not properly handled when administrators use the Database logging module.

6.2 Medium

AI Score

Confidence

High

0.001 Low

EPSS

Percentile

49.9%

Related for PRION:CVE-2012-4469