SQL Injection Vulnerability in Help Tip Module for Drupal
CVE-2006-6530

Currently unrated

Key Information:

Vendor
Drupal
Vendor
CVE Published:
14 December 2006

Summary

The Help Tip module for Drupal versions prior to 4.7.x-1.0 is susceptible to an SQL injection vulnerability that permits remote attackers to execute arbitrary SQL commands. This flaw arises from unspecified vectors, allowing malware to manipulate database queries under certain conditions, potentially exposing sensitive data or compromising the integrity of the database.

References

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.