LWN.net Logo

drupal: code injection

Package(s):drupal CVE #(s):
Created:January 10, 2007 Updated:January 10, 2007
Description: A failure to properly sanitize arguments allows an attacker to inject code into a Drupal system (advisory). There is also a denial of service vulnerability exploitable by users with the ability to post content on the site (advisory).
Alerts:
OpenPKG OpenPKG-SA-2007.003 2007-01-08

(Log in to post comments)

Copyright © 2013, Eklektix, Inc.
Comments and public postings are copyrighted by their creators.
Linux is a registered trademark of Linus Torvalds