PT-2023-10825 · Drupal · Responsive Menu

Ayesh Karunaratne

·

Publicado

2023-05-01

·

Atualizado

2024-05-17

·

CVE-2018-25085

CVSS v3.1

4.8

Média

VetorAV:N/AC:L/PR:H/UI:R/S:C/C:L/I:L/A:N
Name of the Vulnerable Software and Affected Versions Responsive Menus versions 7.x-1.x-dev through 7.x-1.6
Description A vulnerability was found in the Responsive Menus module on Drupal, affecting the responsive menus admin form submit function of the responsive menus.module file. This issue leads to cross-site scripting and can be exploited remotely.
Recommendations Upgrade to version 7.x-1.7 to address this issue. As a temporary workaround, consider disabling the responsive menus admin form submit function until the patch is applied. Restrict access to the responsive menus.module file to minimize the risk of exploitation.

Correção

XSS

Encontrou algum problema na descrição? Tem algo a acrescentar? Fique à vontade para nos escrever 👾

Enumeração de Fraquezas

Identificadores relacionados

CVE-2018-25085

Produtos afetados

Responsive Menu