Lucene search

K

Click2sell Security Vulnerabilities

cve
cve

CVE-2013-5937

Cross-site request forgery (CSRF) vulnerability in the Click2Sell Suite module 6.x-1.x for Drupal allows remote attackers to hijack the authentication of administrators for requests that delete database information via vectors involving the Drupal Form API.

6.9AI Score

0.002EPSS

2013-09-25 02:55 PM
18
cve
cve

CVE-2013-5938

Cross-site scripting (XSS) vulnerability in the Click2Sell Suite module 6.x-1.x for Drupal allows remote attackers to inject arbitrary web script or HTML via a confirmation form.

5.8AI Score

0.003EPSS

2013-09-25 02:55 PM
13