drupal: missing input sanitizing
| Package(s): | drupal | CVE #(s): | CVE-2006-4002 | ||||
| Created: | August 10, 2006 | Updated: | August 16, 2006 | ||||
| Description: | The Drupal web platform performs insufficient input sanitizing in the user module, this can be used for a cross-site scripting attack. | ||||||
| Alerts: |
| ||||||
