Lucene search

K

Wimleers Security Vulnerabilities

cve
cve

CVE-2012-1645

The CDN module 6.x-2.2 and 7.x-2.2 for Drupal, when running in Origin Pull mode with the "Far Future expiration" option enabled, allows remote attackers to read arbitrary PHP files via unspecified vectors, as demonstrated by reading...

7.1AI Score

0.003EPSS

2022-10-03 04:15 PM
23
cve
cve

CVE-2012-1652

Cross-site scripting (XSS) vulnerability in the Hierarchical Select module 6.x-3.x before 6.x-3.8 for Drupal allows remote authenticated users with administer taxonomy permissions to inject arbitrary web script or HTML via unspecified vectors related to "the vocabulary's help...

5.4AI Score

0.001EPSS

2012-09-19 07:55 PM
18
cve
cve

CVE-2010-2724

Cross-site scripting (XSS) vulnerability in the Hierarchical Select module 5.x before 5.x-3.2 and 6.x before 6.x-3.2 for Drupal allows remote authenticated users, with administer taxonomy permissions, to inject arbitrary web script or HTML via unspecified vectors in the hierarchical_select...

5.4AI Score

0.001EPSS

2010-07-13 06:30 PM
14