LWN.net Logo

drupal6: cross-site scripting

Package(s):drupal6 CVE #(s):
Created:June 1, 2009 Updated:June 3, 2009
Description:

From the Debian advisory:

Markus Petrux discovered a cross-site scripting vulnerability in the taxonomy module of drupal6, a fully-featured content management framework. It is also possible that certain browsers using the UTF-7 encoding are vulnerable to a different cross-site scripting vulnerability.

Alerts:
Debian DSA-1808-1 2009-06-01

(Log in to post comments)

Copyright © 2013, Eklektix, Inc.
Comments and public postings are copyrighted by their creators.
Linux is a registered trademark of Linus Torvalds