CVE-2012-1656

Publication date

2012-09-18 20:00:00

Family

redhat

State

PUBLISHED

Description

SQL injection vulnerability in the Multisite Search module 6.x-2.2 for Drupal allows remote authenticated users with certain permissions to execute arbitrary SQL commands via the Site table prefix field.