📦

support_timer

Vendor: tag1consulting

Actively Exploited 0 CISA KEV List
PoC / Exploits 0 Code Available
Total RCEs 0 Remote Access
Total CVEs 2 Total Indexed
Avg. EPSS 0.23% Exploit Prob.
Latest CVE CVE-2011-5188 Sep 20

Security Vulnerability Index

Page 1 / 1
2.1 CVSS

Cross-site scripting (XSS) vulnerability in the Support Timer module 6.x-1.x before 6.x-1.4 for Drupal allows remote authenticated users with the "track time spent" permission to inject arbitrary web script or HTML via unspecified vectors.

EPSS: 0.23%