Beveiligingsadvies

CVE-2008-1133

CVE-kwetsbaarheidsdetails - eXtreme Datacenter Security Operations

Gepubliceerd 2008-03-04 18:00:00
Laatst bijgewerkt 2024-09-17 02:26:49
Toegewezen door mitre
CVSS-score geen score
Status PUBLISHED

Beschrijving

The Drupal.checkPlain function in Drupal 6.0 only escapes the first instance of a character in ECMAScript, which allows remote attackers to conduct cross-site scripting (XSS) attacks.