2.1
CVSSv2

CVE-2013-6387

Published: 24/12/2013 Updated: 04/01/2014
CVSS v2 Base Score: 2.1 | Impact Score: 2.9 | Exploitability Score: 3.9
VMScore: 187
Vector: AV:N/AC:H/Au:S/C:N/I:P/A:N

Vulnerability Summary

Cross-site scripting (XSS) vulnerability in the Image module in Drupal 7.x prior to 7.24 allows remote authenticated users with certain permissions to inject arbitrary web script or HTML via the description field.

Vulnerable Product Search on Vulmon Subscribe to Product

drupal drupal 7.0

drupal drupal 7.16

drupal drupal 7.17

drupal drupal 7.23

drupal drupal 7.3

drupal drupal 7.x-dev

drupal drupal 7.1

drupal drupal 7.10

drupal drupal 7.11

drupal drupal 7.18

drupal drupal 7.19

drupal drupal 7.4

drupal drupal 7.5

drupal drupal 7.12

drupal drupal 7.13

drupal drupal 7.2

drupal drupal 7.20

drupal drupal 7.6

drupal drupal 7.7

drupal drupal 7.14

drupal drupal 7.15

drupal drupal 7.21

drupal drupal 7.22

drupal drupal 7.8

drupal drupal 7.9