Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

debian логотип

CVE-2019-6341

Опубликовано: 26 мар. 2019
Источник: debian
EPSS Средний

Описание

In Drupal 7 versions prior to 7.65; Drupal 8.6 versions prior to 8.6.13;Drupal 8.5 versions prior to 8.5.14. Under certain circumstances the File module/subsystem allows a malicious user to upload a file that can trigger a cross-site scripting (XSS) vulnerability.

Пакеты

ПакетСтатусВерсия исправленияРелизТип
drupal7removedpackage

Примечания

  • https://www.drupal.org/SA-CORE-2019-004

EPSS

Процентиль: 98%
0.58104
Средний

Связанные уязвимости

CVSS3: 5.4
ubuntu
около 6 лет назад

In Drupal 7 versions prior to 7.65; Drupal 8.6 versions prior to 8.6.13;Drupal 8.5 versions prior to 8.5.14. Under certain circumstances the File module/subsystem allows a malicious user to upload a file that can trigger a cross-site scripting (XSS) vulnerability.

CVSS3: 5.4
nvd
около 6 лет назад

In Drupal 7 versions prior to 7.65; Drupal 8.6 versions prior to 8.6.13;Drupal 8.5 versions prior to 8.5.14. Under certain circumstances the File module/subsystem allows a malicious user to upload a file that can trigger a cross-site scripting (XSS) vulnerability.

CVSS3: 5.4
github
около 3 лет назад

Drupal Cross Site Scripting (XSS) vulnerability

EPSS

Процентиль: 98%
0.58104
Средний