CVE-2008-6275

Currently unrated

Key Information:

Vendor
Drupal
Vendor
CVE Published:
25 February 2009

Summary

Cross-site scripting (XSS) vulnerability in the User Karma module 5.x before 5.x-1.13 and 6.x before 6.x-1.0-beta1, a module for Drupal, allows remote attackers to inject arbitrary web script or HTML via unspecified messages.

References

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.