Lucene search

K
freebsdFreeBSD6DA7344B-128A-11DB-B25F-00E00C69A70D
HistoryMay 18, 2006 - 12:00 a.m.

drupal -- multiple vulnerabilities

2006-05-1800:00:00
vuxml.freebsd.org
15

2.6 Low

CVSS2

Attack Vector

NETWORK

Attack Complexity

HIGH

Authentication

NONE

Confidentiality Impact

NONE

Integrity Impact

PARTIAL

Availability Impact

NONE

AV:N/AC:H/Au:N/C:N/I:P/A:N

0.008 Low

EPSS

Percentile

81.9%

The Drupal team reports:

Vulnerability: XSS Vulnerability in taxonomy module
It is possible for a malicious user to insert and execute
XSS into terms, due to lack of validation on output of the
page title. The fix wraps the display of terms in
check_plain().

OSVersionArchitecturePackageVersionFilename
FreeBSDanynoarchdrupal< 4.6.8UNKNOWN

2.6 Low

CVSS2

Attack Vector

NETWORK

Attack Complexity

HIGH

Authentication

NONE

Confidentiality Impact

NONE

Integrity Impact

PARTIAL

Availability Impact

NONE

AV:N/AC:H/Au:N/C:N/I:P/A:N

0.008 Low

EPSS

Percentile

81.9%

Related for 6DA7344B-128A-11DB-B25F-00E00C69A70D