Back to search
CVE-2009-3479
Published: Sep 30, 2009
Modified: Sep 16, 2024
PUBLISHED
Description
Cross-site scripting (XSS) vulnerability in Bibliography (Biblio) 5.x before 5.x-1.17 and 6.x before 6.x-1.6, a module for Drupal, allows remote attackers, with "create content displayed by the Bibliography module" permissions, to inject arbitrary web script or HTML via a title.
| Vendor | Product | Versions |
|---|---|---|
n/a | n/a | affected n/a |
References
http://drupal.org/node/534752
x_refsource_CONFIRM
36083
third-party-advisory
x_refsource_SECUNIA
http://drupal.org/node/534842
x_refsource_CONFIRM
35865
vdb-entry
x_refsource_BID
http://drupal.org/node/534744
x_refsource_CONFIRM
Security Training
Train your team to recognize and prevent security threats with our comprehensive security awareness program.
Start TrainingVulnerability Scanning
Discover vulnerabilities in your applications and infrastructure before attackers do.
Scan Now