mclewin wishlist module for Drupal 6.x-2.x-dev

CPE Details

mclewin wishlist module for Drupal 6.x-2.x-dev
7.x-2.x
2012-09-06
18h42 +00:00
2012-09-10
21h34 +00:00
Alerte pour un CPE
Restez informé de toutes modifications pour un CPE spécifique.
Gestion des notifications

CPE Name: cpe:2.3:a:mclewin:wishlist:7.x-2.x:dev:*:*:*:*:*:*

Informations

Vendor

mclewin

Product

wishlist

Version

7.x-2.x

Update

dev

Related CVE

Open and find in CVE List

CVE ID Publié Description Score Gravité
CVE-2012-2069 2012-09-06 15h00 +00:00 Cross-site request forgery (CSRF) vulnerability in the Wishlist module 6.x-2.x before 6.x-2.6 and 7.x-2.x before 7.x-2.6 for Drupal allows remote attackers to hijack the authentication of arbitrary users for requests that insert cross-site scripting (XSS) sequences via the (1) wl_reveal or (2) q parameters.
6.8