Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

ubuntu логотип

CVE-2008-6170

Опубликовано: 19 фев. 2009
Источник: ubuntu
Приоритет: low
CVSS2: 3.5

Описание

Cross-site scripting (XSS) vulnerability in Drupal 5.x before 5.12 and 6.x before 6.6 allows remote authenticated users with create book content or edit node book hierarchy permissions to inject arbitrary web script or HTML via the book page title.

РелизСтатусПримечание
dapper

DNE

devel

DNE

gutsy

ignored

end of life, was needed
hardy

released

5.7-1ubuntu1.2
intrepid

released

5.10-1ubuntu1.1
jaunty

not-affected

karmic

not-affected

upstream

released

5.15-1

Показывать по

РелизСтатусПримечание
dapper

DNE

devel

not-affected

gutsy

DNE

hardy

DNE

intrepid

DNE

jaunty

not-affected

karmic

not-affected

upstream

released

6.6-3

Показывать по

3.5 Low

CVSS2

Связанные уязвимости

nvd
больше 16 лет назад

Cross-site scripting (XSS) vulnerability in Drupal 5.x before 5.12 and 6.x before 6.6 allows remote authenticated users with create book content or edit node book hierarchy permissions to inject arbitrary web script or HTML via the book page title.

debian
больше 16 лет назад

Cross-site scripting (XSS) vulnerability in Drupal 5.x before 5.12 and ...

github
около 3 лет назад

Cross-site scripting (XSS) vulnerability in Drupal 5.x before 5.12 and 6.x before 6.6 allows remote authenticated users with create book content or edit node book hierarchy permissions to inject arbitrary web script or HTML via the book page title.

3.5 Low

CVSS2