CVE-2010-1074
23.03.2010, 18:30
Cross-site scripting (XSS) vulnerability in the Currency Exchange module before 6.x-1.2 for Drupal allows remote attackers to inject arbitrary web script or HTML via unspecified vectors, related to watchdog logging.
Vendor | Product | Version |
---|---|---|
2bits | currency | 𝑥 ≤ 6.x-1.1 |
2bits | currency | 4.7.x-1.x-dev:x |
2bits | currency | 5.x-1.0:x |
2bits | currency | 5.x-1.1:x |
2bits | currency | 5.x-1.1:x |
2bits | currency | 5.x-1.2:x |
2bits | currency | 5.x-1.3:x |
2bits | currency | 5.x-1.x-dev:x |
2bits | currency | 6.x-1.0:x |
2bits | currency | 6.x-1.x-dev:x |
𝑥
= Vulnerable software versions
References