Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
Cross-site scripting (XSS) vulnerability in Drupal 5.x before 5.17 and 6.x before 6.11, as used in vbDrupal before 5.17.0, allows remote attackers to inject arbitrary web script or HTML via crafted UTF-8 byte sequences before the Content-Type meta tag, which are treated as UTF-7 by Internet Explorer 6 and 7.
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
Drupal 跨站脚本攻击漏洞
Vulnerability Description
Drupal是一个使用PHP编写的开放源码内容管理系统(CMS)。 Drupal 5.17版本之前的5.x版本以及6.11版本之前的6.x版本中存在跨站脚本攻击漏洞,当在vbDrupal 5.17.0版本之前的版本运行时,远程攻击者可以借助Content-Type元标签之前的特制grrrrrrrrrrrrrrrrrrrrrrrrrrrrrrrrrrrrrrrrrrrrrrrrrrrrrrrrrrrrrrrrrrrrrrrrrrrrrrrrrrrrrrrrrrrrrrrrrrrrrrrrrrrrrrrrrr
CVSS Information
N/A
Vulnerability Type
N/A