Cross-site scripting (XSS) vulnerability in the fusion_core_preprocess_page function in fusion_core/template.php in the Fusion module before 6.x-1.13 for Drupal allows remote attackers to inject arbitrary web script or HTML via the q parameter.
History

No history.

cve-icon MITRE

Status: PUBLISHED

Assigner: redhat

Published: 2012-08-31T22:00:00Z

Updated: 2024-09-17T03:19:12.158Z

Reserved: 2012-04-04T00:00:00Z

Link: CVE-2012-2083

cve-icon Vulnrichment

No data.

cve-icon NVD

Status : Analyzed

Published: 2012-08-31T22:55:01.577

Modified: 2012-09-04T04:00:00.000

Link: CVE-2012-2083

cve-icon Redhat

No data.