Security Advisory

CVE-2012-1656

CVE vulnerability detail — eXtreme Datacenter Security Operations

Published 2012-09-18 20:00:00
Last updated 2024-08-06 19:01:02
Assigner redhat
State PUBLISHED

Description

SQL injection vulnerability in the Multisite Search module 6.x-2.2 for Drupal allows remote authenticated users with certain permissions to execute arbitrary SQL commands via the Site table prefix field.