drupal: code injection
| Package(s): | drupal | CVE #(s): | |||||
| Created: | January 10, 2007 | Updated: | January 10, 2007 | ||||
| Description: | A failure to properly sanitize arguments allows an attacker to inject code into a Drupal system (advisory). There is also a denial of service vulnerability exploitable by users with the ability to post content on the site (advisory). | ||||||
| Alerts: |
| ||||||
