CVE-2012-1626
Published Sep 20, 2012SQL injection vulnerability in the conversion form for Events in the Date module 6.x-2.x before 6.x-2.8 for Drupal allows remote authenticated users with the "administer Date Tool…
Vendor/product archive
2 CVEs tagged to karen_stevenson / date — 0 Critical, 0 High, 1 Medium, 1 Low, 0 Unrated.
SQL injection vulnerability in the conversion form for Events in the Date module 6.x-2.x before 6.x-2.8 for Drupal allows remote authenticated users with the "administer Date Tool…
Cross-site scripting (XSS) vulnerability in the Date Tools sub-module in the Date module 6.x before 6.x-2.3 for Drupal allows remote authenticated users, with "use date tools" or…