Логотип exploitDog
bind:CVE-2007-0626
Консоль
Логотип exploitDog

exploitDog

bind:CVE-2007-0626

Количество 4

Количество 4

ubuntu логотип

CVE-2007-0626

почти 19 лет назад

The comment_form_add_preview function in comment.module in Drupal before 4.7.6, and 5.x before 5.1, and vbDrupal, allows remote attackers with "post comments" privileges and access to multiple input filters to execute arbitrary code by previewing comments, which are not processed by "normal form validation routines."

CVSS2: 6.5
EPSS: Низкий
nvd логотип

CVE-2007-0626

почти 19 лет назад

The comment_form_add_preview function in comment.module in Drupal before 4.7.6, and 5.x before 5.1, and vbDrupal, allows remote attackers with "post comments" privileges and access to multiple input filters to execute arbitrary code by previewing comments, which are not processed by "normal form validation routines."

CVSS2: 6.5
EPSS: Низкий
debian логотип

CVE-2007-0626

почти 19 лет назад

The comment_form_add_preview function in comment.module in Drupal befo ...

CVSS2: 6.5
EPSS: Низкий
github логотип

GHSA-phv5-85pf-xrp3

больше 3 лет назад

The comment_form_add_preview function in comment.module in Drupal before 4.7.6, and 5.x before 5.1, and vbDrupal, allows remote attackers with "post comments" privileges and access to multiple input filters to execute arbitrary code by previewing comments, which are not processed by "normal form validation routines."

EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
ubuntu логотип
CVE-2007-0626

The comment_form_add_preview function in comment.module in Drupal before 4.7.6, and 5.x before 5.1, and vbDrupal, allows remote attackers with "post comments" privileges and access to multiple input filters to execute arbitrary code by previewing comments, which are not processed by "normal form validation routines."

CVSS2: 6.5
5%
Низкий
почти 19 лет назад
nvd логотип
CVE-2007-0626

The comment_form_add_preview function in comment.module in Drupal before 4.7.6, and 5.x before 5.1, and vbDrupal, allows remote attackers with "post comments" privileges and access to multiple input filters to execute arbitrary code by previewing comments, which are not processed by "normal form validation routines."

CVSS2: 6.5
5%
Низкий
почти 19 лет назад
debian логотип
CVE-2007-0626

The comment_form_add_preview function in comment.module in Drupal befo ...

CVSS2: 6.5
5%
Низкий
почти 19 лет назад
github логотип
GHSA-phv5-85pf-xrp3

The comment_form_add_preview function in comment.module in Drupal before 4.7.6, and 5.x before 5.1, and vbDrupal, allows remote attackers with "post comments" privileges and access to multiple input filters to execute arbitrary code by previewing comments, which are not processed by "normal form validation routines."

5%
Низкий
больше 3 лет назад

Уязвимостей на страницу