Cross-Site Scripting Vulnerability in Drupal Commerce Balanced Payments Module
CVE-2015-3384

Currently unrated

What is CVE-2015-3384?

A cross-site scripting vulnerability exists in the Bank Account Listing Page of the Commerce Balanced Payments module for Drupal. This flaw allows remote authenticated users to inject arbitrary web scripts or HTML due to unspecified vectors, potentially compromising the integrity of the application and exposing users to malicious content.

References

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.