CVE-2012-2076

ROB Loach Sharethis - XSS

Title source: rule

Description

Cross-site scripting (XSS) vulnerability in the administration forms in the ShareThis module 7.x-2.x before 7.x-2.3 for Drupal allows remote authenticated users with administer sharethis permissions to inject arbitrary web script or HTML via unspecified vectors.

Scores

EPSS 0.0026
EPSS Percentile 49.0%

Classification

CWE
CWE-79
Status published

Affected Products (5)

rob_loach/sharethis
rob_loach/sharethis
rob_loach/sharethis
rob_loach/sharethis
n/a/n/a

Timeline

Published Aug 14, 2012
Tracked Since Feb 18, 2026