CVE-2009-4065
24.11.2009, 02:30
Cross-site scripting (XSS) vulnerability in the settings page in the Strongarm module 6.x before 6.x-1.1 for Drupal allows remote attackers to inject arbitrary web script or HTML via the value field when viewing overridden variables.
Vendor | Product | Version |
---|---|---|
jeff_miccolis | strongarm_module | 𝑥 ≤ 6.x-1.0 |
jeff_miccolis | strongarm_module | 6.x-1.0-beta1:x |
jeff_miccolis | strongarm_module | 6.x-1.0-beta2:x |
jeff_miccolis | strongarm_module | 6.x-1.0-beta3:x |
𝑥
= Vulnerable software versions
References