Lucene search

K

Aggregation Module Security Vulnerabilities

cve
cve

CVE-2008-3001

The Aggregation module 5.x before 5.x-4.4 for Drupal allows remote attackers to upload files with arbitrary extensions, and possibly execute arbitrary code, via a crafted feed that allows upload of files with arbitrary...

7.4AI Score

0.04EPSS

2008-07-03 06:41 PM
14
cve
cve

CVE-2008-2998

Multiple cross-site scripting (XSS) vulnerabilities in the Aggregation module 5.x before 5.x-4.4 for Drupal allow remote attackers to inject arbitrary web script or HTML via unspecified...

5.8AI Score

0.002EPSS

2008-07-03 06:41 PM
25
cve
cve

CVE-2008-2999

Multiple SQL injection vulnerabilities in the Aggregation module 5.x before 5.x-4.4 for Drupal allow remote attackers to execute arbitrary SQL commands via unspecified...

8.6AI Score

0.001EPSS

2008-07-03 06:41 PM
19
cve
cve

CVE-2008-3000

The Aggregation module 5.x before 5.x-4.4 for Drupal, when node access modules are used, does not properly implement access control, which allows remote attackers to bypass intended...

6.8AI Score

0.006EPSS

2008-07-03 06:41 PM
18