Heap
04-07-08, 22:36
Multiple cross-site scripting (XSS) vulnerabilities in the Aggregation module 5.x before 5.x-4.4 for Drupal allow remote attackers to inject arbitrary web script or HTML via unspecified vectors.
More... (http://nvd.nist.gov/nvd.cfm?cvename=CVE-2008-2998)
More... (http://nvd.nist.gov/nvd.cfm?cvename=CVE-2008-2998)