SQL Injection Vulnerabilities in Aggregation Module for Drupal
CVE-2008-2999

Currently unrated

Key Information:

Vendor
Drupal
Vendor
CVE Published:
3 July 2008

Summary

The Aggregation module for Drupal versions prior to 5.x-4.4 is susceptible to multiple SQL injection vulnerabilities. These flaws enable remote attackers to manipulate SQL queries, potentially leading to data exposure or unauthorized modification of the database. Exploitation of these vulnerabilities can occur through unspecified vectors, posing significant risks to the integrity and security of affected systems. It is crucial for users of the Aggregation module to update to the latest versions to mitigate these security risks.

References

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.