Skip to main content

Vendor/product archive

drupal / data CVEs

Beta · best-effort

2 CVEs tagged to drupal / data1 Critical, 0 High, 1 Medium, 0 Low, 0 Unrated.

CVE-2011-2715

Published Jan 14, 2020

An SQL Injection vulnerability exists in Drupal 6.20 with Data 6.x-1.0-alpha14 due to insufficient sanitization of table names or column names.

CVSS 9.8 · Critical
Vendor/product tagsBeta · best-effort

CVE-2011-2714

Published Jan 14, 2020

A Cross-Site Scripting vulnerability exists in Drupal 6.20 with Data 6.x-1.0-alpha14 due to insufficient sanitization of table descriptions, field names, or labels before display.

CVSS 6.1 · Medium
Vendor/product tagsBeta · best-effort
Showing 1-2 of 2 CVEsPage 1 of 1