2.6
CVSSv2

CVE-2012-2712

Published: 27/06/2012 Updated: 29/08/2017
CVSS v2 Base Score: 2.6 | Impact Score: 2.9 | Exploitability Score: 4.9
VMScore: 231
Vector: AV:N/AC:H/Au:N/C:N/I:P/A:N

Vulnerability Summary

Multiple cross-site scripting (XSS) vulnerabilities in the Search API module 7.x-1.x prior to 7.x-1.1 for Drupal, when supporting manual entry of field identifiers, allow remote malicious users to inject arbitrary web script or HTML via vectors related to thrown exceptions and logging errors.

Vulnerable Product Search on Vulmon Subscribe to Product

thomas_seidl search_api 7.x-1.0

thomas_seidl search_api 7.x-1.x