what you don't know can hurt you
Home Files News &[SERVICES_TAB]About Contact Add New
Showing 26 - 50 of 100 RSS Feed

Files

DRUPAL-SA-2006-008.txt
Posted Jun 3, 2006
Authored by Uwe Hermann | Site drupal.org

Drupal security advisory DRUPAL-SA-2006-008: Bart Jansens reported that it is possible for a malicious user to insert and execute XSS into free tagging terms, due to lack of validation on output of the page title. The fix wraps the display of terms in check_plain().

tags | advisory
SHA-256 | b0584638f5b9adbb1149a2a0377ce9f140df6fe298f84e5f8c229862801bc629

Related Files

Drupal Site Documentation 6.x Information Disclosure
Posted Apr 25, 2012
Authored by Jakub Suchy | Site drupal.org

Drupal Site Documentation version 6.x suffers from an information disclosure vulnerability.

tags | advisory, info disclosure
SHA-256 | 4deadfa9ab12cae4f4a040ed36b5884ad4ff166adbf02566eb2e9c63746223a7
Drupal Ubercart 6.x / 7.x XSS / PHP Code Execution
Posted Apr 25, 2012
Authored by Shaun Dychko, Dave Long, Lee Rowlands | Site drupal.org

Drupal Ubercart module versions 6.x and 7.x suffers from code execution and cross site scripting vulnerabilities.

tags | advisory, vulnerability, code execution, xss
SHA-256 | 8ad5e51b2e8211b46a86fd0884c4432816a13267ddf774999bf5b42ae172622a
Drupal RealName 6.x Cross Site Scripting
Posted Apr 25, 2012
Authored by Gabor Szanto, Dave Reid | Site drupal.org

Drupal RealName module version 6.x suffers from a cross site scripting vulnerability.

tags | advisory, xss
SHA-256 | ac32848d9a2bea11a8b9268c408786c21c6630e8ea7f32e8da717fb8ab2000c7
Drupal Creative Commons 6.x Cross Site Scripting
Posted Apr 25, 2012
Authored by Justin C. Klein Keane | Site drupal.org

Drupal Creative Commons module version 6.x suffers from a cross site scripting vulnerability.

tags | advisory, xss
SHA-256 | cd7543b39866fa90a05ae4e94480fc308d2a02154efdb0ede21f8750010f1192
Drupal Gigya - Social Optimization 6.x Cross Site Scripting
Posted Apr 18, 2012
Authored by Marek Lyczba | Site drupal.org

Drupal Gigya - Social Optimization module version 6.x suffers from a cross site scripting vulnerability.

tags | advisory, xss
SHA-256 | 5a648a49dcc4b4ce0da4b05ec58974c85fa9e0ade6360de5d89dc1e0ef413307
Drupal Commerce Reorder 7.x Cross Site Request Forgery
Posted Apr 18, 2012
Authored by Ivo Van Geertruyen | Site drupal.org

Drupal Commerce Reorder module version 7.x suffers from a cross site request forgery vulnerability.

tags | advisory, csrf
SHA-256 | e864c23fc70ff39f1ecdb1cc5443132330a3c198903dbbc639d16efcfe4c0520
Drupal Autosave 6.x / 7.x Cross Site Request Forgery
Posted Apr 12, 2012
Authored by Ryan Jud Hughes | Site drupal.org

The Drupal Autosave module versions 6.x and 7.x suffer from a cross site request forgery vulnerability.

tags | advisory, csrf
SHA-256 | a5010955517768867cfa38f156ec8127f1676c81935ed688afd452e6df38d04e
Drupal Fivestar 6.x Input Validation
Posted Apr 12, 2012
Authored by Ezra Barnett Gildesgame | Site drupal.org

The Drupal Fivestar module version 6.x suffers from an input validation vulnerability that allows a malicious user to improperly modify voting averages.

tags | advisory
SHA-256 | 5e603b28ddbe1a91965a76ce7952b5d0185b5857eec6494e0a37c3d54ff9dd84
Drupal Printer, Email And PDF Cross Site Scripting
Posted Apr 5, 2012
Authored by Shlomi Zadok, Ivan Bueno | Site drupal.org

The Printer, Email and PDF third party module versions 6.x and 7.x for Drupal suffer from a cross site scripting vulnerability.

tags | advisory, xss
SHA-256 | 3a9fa042b84d0b09a2b5f4a2019c52f6bdffe02082a4499e8d6b1b55a1a3f2c0
Drupal Janrain Engage 6.x / 7.x Data Retention
Posted Apr 5, 2012
Authored by Peter Wolanin | Site drupal.org

The Janrain Engage third-party Drupal module suffers from a sensitive data protection vulnerability.

tags | advisory
SHA-256 | 63d8dd37d587a6dc848e72c0d6d8d8ebd6bd97cd050663f08f086de0195c168e
Drupal Activity 6.x XSS Proof Of Concept
Posted Mar 29, 2012
Authored by Justin C. Klein Keane | Site drupal.org

This file documents a proof of concept to demonstrate the cross site scripting vulnerability in the Drupal Activity module version 6.x.

tags | exploit, xss, proof of concept
SHA-256 | 21cff53d4151dcb6cd0a86095cfb274645d44512ecad08ffa9a0c5beb8eac1e5
Drupal Fusion 6.x Cross Site Scripting
Posted Mar 29, 2012
Authored by Justin Emond, Rick Manelius, Abhishek Nagar, Jakub Suchy, Chris Lee | Site drupal.org

The Drupal Fusion module version 6.x suffers from a cross site scripting vulnerability.

tags | advisory, xss
SHA-256 | 8311447d5c5e9a519065e8708e1a06e2ea1f83db30ea859607056582c4f49fb0
Drupal Chaos Tool Suite 7.x Cross Site Scripting
Posted Mar 29, 2012
Authored by Kristof De Jaeger | Site drupal.org

The Drupal Chaos Tool Suite module version 7.x suffers from a cross site scripting vulnerability.

tags | advisory, xss
SHA-256 | 80d66e0a5170005cb66e1988ba20428a8cdff88a472053008c696562e43d5e13
Drupal Organic Groups 6.x Access Bypass
Posted Mar 29, 2012
Authored by John F Galvin | Site drupal.org

The Drupal Organic Groups module version 6.x suffers from an access bypass vulnerability.

tags | advisory, bypass
SHA-256 | dbb190a4af2ae746e702f203bad02665c8856d9855a61e43a4847ccb615818d9
Drupal Node Limit Number 6.x Cross Site Request Forgery
Posted Mar 29, 2012
Authored by Ivo Van Geertruyen | Site drupal.org

The Drupal Node Limit Number module version 6.x suffers from a cross site request forgery vulnerability.

tags | advisory, csrf
SHA-256 | 6805b4ae6f65fa98f5f3777e6d21416e40462b6e4a34e82bda701ca122f54e18
Drupal Activity 6.x Cross Site Scripting / Cross Site Request Forgery
Posted Mar 29, 2012
Authored by Ivo Van Geertruyen | Site drupal.org

The Drupal Activity module version 6.x suffers from cross site request forgery and cross site scripting vulnerabilities.

tags | advisory, vulnerability, xss, csrf
SHA-256 | f1ab2c8be7c64f4cde5f3e2584e0aee9dc6e731a37c01a7814e015f86d05663e
Drupal CDN2 Video 6.x Cross Site Scripting / Cross Site Request Forgery
Posted Mar 29, 2012
Authored by Michael Hess | Site drupal.org

The Drupal CDN2 Video version 6.x suffers from cross site request forgery and cross site scripting vulnerabilities.

tags | advisory, vulnerability, xss, csrf
SHA-256 | b14e348d6a46c47dca28df0e56d0c958c435da23181eee43b81ba8f5638a1b53
Drupal ShareThis 7.x Cross Site Scripting / Cross Site Request Forgery
Posted Mar 29, 2012
Authored by Travis Tomka | Site drupal.org

The Drupal ShareThis module version 7.x suffers from cross site scripting and cross site request forgery vulnerabilities.

tags | advisory, vulnerability, xss, csrf
SHA-256 | 6f1fc921aa8dbaf987fc49f4d907a7c41b0bea13d50a8253caba9f9ef13db7c8
Drupal Contact Save 6.x Cross Site Scripting
Posted Mar 29, 2012
Authored by Stella Power | Site drupal.org

The Drupal Contact Save module version 6.x suffers from a cross site scripting vulnerability.

tags | advisory, xss
SHA-256 | 4f3ea4adabb18907ffc82b631487d5e06d8fd821187f9b3c6847ab996799d1e6
Drupal Ubercart Views 6.x Access Bypass
Posted Mar 29, 2012
Authored by Derek Wright | Site drupal.org

The Drupal Ubercart Views module version 6.x suffers from an access bypass vulnerability.

tags | advisory, bypass
SHA-256 | 95d851e70092474174c3f74c194eba0d23ffef4f23ad8d778f8b91a297a6a861
Drupal Bundle Copy 7.x Cross Site Scripting
Posted Mar 29, 2012
Authored by David Rothstein | Site drupal.org

The Drupal Bundle Copy module version 6.x suffers from an arbitrary code execution vulnerability.

tags | advisory, arbitrary, code execution
SHA-256 | c91035ffcabe2a3b441c6f0e5b74a15d68101edb844b0764bfa9860191cf19cf
Drupal Share Buttons 6.x Cross Site Scripting
Posted Mar 29, 2012
Authored by Kyle Small | Site drupal.org

The Drupal Share Buttons module version 6.x suffers from a cross site scripting vulnerability.

tags | advisory, xss
SHA-256 | 5929a532a032594c5e8d08c25f27d18537dd86ccf4232cb0eec503cca25d9477
Drupal Contact Forms 6.x Cross Site Scripting
Posted Mar 29, 2012
Authored by Ivo Van Geertruyen | Site drupal.org

The Drupal Contact Forms module version 6.x suffers from a cross site scripting vulnerability.

tags | advisory, xss
SHA-256 | fca0267cc244bdcfe1162744aabb35fed630fe06c6831938ae2596911c31689c
Drupal MultiBlock 6.x / 7.x Cross Site Scripting
Posted Mar 29, 2012
Authored by Justin C. Klein Keane | Site drupal.org

The Drupal MultiBlock module versions 6.x and 7.x suffer from a cross site scripting vulnerability.

tags | advisory, xss
SHA-256 | 70876e7c8dfc2f422a45f8e33d5d72db26ba4d5e5008daa1b372d2d3d3154b0c
Drupal Wishlist Module 6.x / 7.x XSS / CSRF
Posted Mar 22, 2012
Authored by Justin C. Klein Keane | Site drupal.org

The Drupal Wishlist module versions 6.x and 7.x suffer from cross site request forgery and cross site scripting vulnerabilities.

tags | advisory, vulnerability, xss, csrf
SHA-256 | 5e55d2cdca26c33d5bf366c7dedf2d20279db2966b24d218bdf2eb529f0dc53e
Page 2 of 4
Back1234Next

File Archive:

March 2023

  • Su
  • Mo
  • Tu
  • We
  • Th
  • Fr
  • Sa
  • 1
    Mar 1st
    16 Files
  • 2
    Mar 2nd
    13 Files
  • 3
    Mar 3rd
    15 Files
  • 4
    Mar 4th
    0 Files
  • 5
    Mar 5th
    0 Files
  • 6
    Mar 6th
    16 Files
  • 7
    Mar 7th
    31 Files
  • 8
    Mar 8th
    16 Files
  • 9
    Mar 9th
    13 Files
  • 10
    Mar 10th
    9 Files
  • 11
    Mar 11th
    0 Files
  • 12
    Mar 12th
    0 Files
  • 13
    Mar 13th
    10 Files
  • 14
    Mar 14th
    6 Files
  • 15
    Mar 15th
    17 Files
  • 16
    Mar 16th
    22 Files
  • 17
    Mar 17th
    13 Files
  • 18
    Mar 18th
    0 Files
  • 19
    Mar 19th
    0 Files
  • 20
    Mar 20th
    16 Files
  • 21
    Mar 21st
    13 Files
  • 22
    Mar 22nd
    5 Files
  • 23
    Mar 23rd
    6 Files
  • 24
    Mar 24th
    0 Files
  • 25
    Mar 25th
    0 Files
  • 26
    Mar 26th
    0 Files
  • 27
    Mar 27th
    0 Files
  • 28
    Mar 28th
    0 Files
  • 29
    Mar 29th
    0 Files
  • 30
    Mar 30th
    0 Files
  • 31
    Mar 31st
    0 Files

Top Authors In Last 30 Days

File Tags

Systems

packet storm

© 2022 Packet Storm. All rights reserved.

Services
Security Services
Hosting By
Rokasec
close