Vulnerabilities
Vulnerable Software

Vulnerability Details CVE-2012-2703

Cross-site scripting (XSS) vulnerability in the Advertisement module 6.x-2.x before 6.x-2.3 for Drupal, when debug mode is enabled, allows remote attackers to inject arbitrary web script or HTML via vectors related to the "$conf variable in settings.php."
Exploit prediction scoring system (EPSS) score
EPSS Score 0.004
EPSS Ranking 57.7%
CVSS Severity
CVSS v2 Score 2.6
Products affected by CVE-2012-2703


Contact Us

Shodan ® - All rights reserved