2.1
CVSSv2

CVE-2010-1584

Published: 19/05/2010 Updated: 17/08/2017
CVSS v2 Base Score: 2.1 | Impact Score: 2.9 | Exploitability Score: 3.9
VMScore: 187
Vector: AV:N/AC:H/Au:S/C:N/I:P/A:N

Vulnerability Summary

Cross-site scripting (XSS) vulnerability in the Context module prior to 6.x-2.0-rc4 for Drupal allows remote authenticated users, with Administer Blocks privileges, to inject arbitrary web script or HTML via a block description.

Vulnerable Product Search on Vulmon Subscribe to Product

steven_jones context 6.x-2.0

steven_jones context

Exploits

Drupal version 616 with Context 6x-20-rc3 suffers from a cross site scripting vulnerability ...