CVE-2012-1658: XSS
Cross-site scripting (XSS) vulnerability in the Read More Link module 6.x-3.x before 6.x-3.1 for Drupal allows remote authenticated users with the access administration pages permission to inject arbitrary web script or HTML via unspecified vectors.
Affected Software
Remediation
Patch Available
Patch Available
Event History
Frequently Asked Questions
What is the severity of CVE-2012-1658?
CVE-2012-1658 is classified as a cross-site scripting (XSS) vulnerability that can lead to significant security risks if exploited.
How do I fix CVE-2012-1658?
To fix CVE-2012-1658, update the Read More Link module to version 6.x-3.1 or later.
Who is affected by CVE-2012-1658?
CVE-2012-1658 affects remote authenticated users of the Read More Link module in Drupal versions prior to 6.x-3.1.
What can attackers do with CVE-2012-1658?
Attackers exploiting CVE-2012-1658 can inject arbitrary web scripts or HTML, potentially leading to account compromise or data manipulation.
Is there a known exploit for CVE-2012-1658?
While specific exploits for CVE-2012-1658 have not been publicly disclosed, the nature of cross-site scripting vulnerabilities makes them a common target.