This CPE summary could be partial or incomplete. Please contact us for a detailed listing.

Summary

Detail
Vendor Daniel Honrade First view 2012-12-03
Product Om Maximenu Last view 2012-12-03
Version 7.x-1.31 Type Application
Update *  
Edition *  
Language *  
Sofware Edition *  
Target Software *  
Target Hardware *  
Other *  
 
CPE Product cpe:2.3:a:daniel_honrade:om_maximenu

Activity : Overall

Related : CVE

  Date Alert Description
2.1 2012-12-03 CVE-2012-5553

Multiple cross-site scripting (XSS) vulnerabilities in the OM Maximenu module 6.x-1.x before 6.x-1.44 and 7.x-1.x before 7.x-1.44 for Drupal allow remote authenticated users with the "administer OM Maximenu" permission to inject arbitrary web script or HTML via the (1) Menu Title (2) Link Title, (3) Path Query, (4) Anchor, or (5) vocabulary names.

CWE : Common Weakness Enumeration

%idName
100% (1) CWE-79 Failure to Preserve Web Page Structure ('Cross-site Scripting')