vendor:
Drupal
by:
Unknown
N/A
CVSS
N/A
Cross-site scripting, phishing, security bypass
Unknown
CWE
Product Name: Drupal
Affected Version From: Drupal 5.x prior to 5.22, Drupal 6.x prior to 6.16
Affected Version To: Unknown
Patch Exists: NO
Related CWE: Unknown
CPE: Unknown
Platforms Tested:
Unknown
Multiple vulnerabilities in Drupal
An attacker can execute arbitrary code in the browser, steal authentication credentials, bypass security restrictions, or perform other attacks.
Mitigation:
Unknown