CVE

Id
45308  
CVE No.
CVE-2010-2724  
Status
Candidate  
Description
Cross-site scripting (XSS) vulnerability in the Hierarchical Select module 5.x before 5.x-3.2 and 6.x before 6.x-3.2 for Drupal allows remote authenticated users, with administer taxonomy permissions, to inject arbitrary web script or HTML via unspecified vectors in the hierarchical_select form.  
Phase
Assigned (20100713)  
Votes
None (candidate not yet proposed)  
Comments