Drupal Devel Module Variable Editor HTML Injection Vulnerability
|
Bugtraq ID:
|
36508
|
|
Class:
|
Input Validation Error
|
|
CVE:
|
|
|
Remote:
|
Yes
|
|
Local:
|
No
|
|
Published:
|
Sep 23 2009 12:00AM
|
|
Updated:
|
Sep 24 2009 04:40PM
|
|
Credit:
|
Stéphane Corlosquet of the Drupal Security Team
|
|
Vulnerable:
|
Drupal Devel 6.x-1.17
Drupal Devel 5.x-1.1
|
|
|
|
Not Vulnerable:
|
Drupal Devel 6.x-1.18
Drupal Devel 5.x-1.2
|
|