Cross-Site Scripting Vulnerability in Brilliant Gallery for Drupal
CVE-2008-4530

Currently unrated

Key Information:

Vendor
Drupal
Vendor
CVE Published:
9 October 2008

Summary

A Cross-Site Scripting (XSS) vulnerability exists in Brilliant Gallery 5.x prior to version 5.x-4.2. This issue allows remote authenticated users with sufficient permissions to inject arbitrary web script or HTML through unspecified input vectors used when posting answers. This could potentially lead to the execution of malicious scripts in users' browsers, exposing them to further attacks.

References

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.