Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

ubuntu логотип

CVE-2006-2832

Опубликовано: 06 июн. 2006
Источник: ubuntu
Приоритет: untriaged
CVSS2: 2.6

Описание

Cross-site scripting (XSS) vulnerability in the upload module (upload.module) in Drupal 4.6.x before 4.6.8 and 4.7.x before 4.7.2 allows remote attackers to inject arbitrary web script or HTML via the uploaded filename.

РелизСтатусПримечание
dapper

ignored

end of life
devel

DNE

edgy

released

4.5.8-2
feisty

ignored

end of life, was needed
gutsy

DNE

hardy

DNE

intrepid

DNE

jaunty

DNE

karmic

DNE

upstream

needs-triage

Показывать по

Ссылки на источники

2.6 Low

CVSS2

Связанные уязвимости

nvd
около 19 лет назад

Cross-site scripting (XSS) vulnerability in the upload module (upload.module) in Drupal 4.6.x before 4.6.8 and 4.7.x before 4.7.2 allows remote attackers to inject arbitrary web script or HTML via the uploaded filename.

debian
около 19 лет назад

Cross-site scripting (XSS) vulnerability in the upload module (upload. ...

github
около 3 лет назад

Cross-site scripting (XSS) vulnerability in the upload module (upload.module) in Drupal 4.6.x before 4.6.8 and 4.7.x before 4.7.2 allows remote attackers to inject arbitrary web script or HTML via the uploaded filename.

2.6 Low

CVSS2