mclewin wishlist module for Drupal 6.x-2.1-beta

CPE Details

mclewin wishlist module for Drupal 6.x-2.1-beta
6.x-2.1
2012-09-06
18h42 +00:00
2012-09-10
21h34 +00:00
Alerte pour un CPE
Restez informé de toutes modifications pour un CPE spécifique.
Gestion des notifications

CPE Name: cpe:2.3:a:mclewin:wishlist:6.x-2.1:beta:*:*:*:*:*:*

Informations

Vendor

mclewin

Product

wishlist

Version

6.x-2.1

Update

beta

Related CVE

Open and find in CVE List

CVE ID Publié Description Score Gravité
CVE-2012-2069 2012-09-06 15h00 +00:00 Cross-site request forgery (CSRF) vulnerability in the Wishlist module 6.x-2.x before 6.x-2.6 and 7.x-2.x before 7.x-2.6 for Drupal allows remote attackers to hijack the authentication of arbitrary users for requests that insert cross-site scripting (XSS) sequences via the (1) wl_reveal or (2) q parameters.
6.8