Files
CVEs-PoC/2012/CVE-2012-3800.md
2025-09-29 21:09:30 +02:00

756 B

CVE-2012-3800

Description

Cross-site scripting (XSS) vulnerability in og.js in the Organic Groups (OG) module 6.x-2.x before 6.x-2.4 for Drupal, when used with the Vertical Tabs module, allows remote authenticated users to inject arbitrary web script or HTML via vectors related the group title.

POC

Reference

Github

No PoCs found on GitHub currently.