01642 06 11 11 Arrange Call

Arbitrary Script Injection in EU Cookie Compliance Module for Drupal

CVE-2013-7064 · LOW

CVE-2013-7064

Cross-site scripting (XSS) vulnerability in the EU Cookie Compliance module 7.x-1.x before 7.x-1.12 for Drupal allows remote authenticated administrators with the "Administer EU Cookie Compliance popup" permission to inject arbitrary web script or HTML via unspecified configuration values.

Learn more about our Web App Pen Testing.