CVE
- Id
- 81663
- CVE No.
- CVE-2015-4386
- Status
- Candidate
- Description
- Multiple cross-site scripting (XSS) vulnerabilities in unspecified administration pages in the EntityBulkDelete module 7.x-1.0 for Drupal allow remote attackers to inject arbitrary web script or HTML via unknown vectors involving creating or editing (1) comments, (2) taxonomy terms, or (3) nodes.
- Phase
- Assigned (20150605)
- Votes
- None (candidate not yet proposed)
- Comments