CVE-2014-1607 | Drupal 7.14 eventcalander/ Reflected cross site scripting (XFDB-90697 / BID-65134)
A vulnerability was found in Drupal 7.14 and classified as problematic. This issue affects some unknown processing of the file eventcalander/. The manipulation leads to cross site scripting (Reflected).
The identification of this vulnerability is CVE-2014-1607. The attack may be initiated remotely. Furthermore, there is an exploit available.
The real existence of this vulnerability is still doubted at the moment.