Vulnerabilities > Inclind

DATE CVE VULNERABILITY TITLE RISK
2012-10-31 CVE-2012-4496 Cross-Site Scripting vulnerability in Inclind Custom PUB
Cross-site scripting (XSS) vulnerability in the Custom Publishing Options module 6.x-1.x before 6.x-1.4 for Drupal allows remote authenticated users with the "administer nodes" permission to inject arbitrary web script or HTML via the status labels parameter.
network
high complexity
inclind drupal CWE-79
2.1