6.8
CVSSv2

CVE-2006-6647

Published: 20/12/2006 Updated: 08/03/2011
CVSS v2 Base Score: 6.8 | Impact Score: 6.4 | Exploitability Score: 8.6
VMScore: 605
Vector: AV:N/AC:M/Au:N/C:P/I:P/A:P

Vulnerability Summary

Cross-site scripting (XSS) vulnerability in the MySite 4.7.x prior to 4.7.x-3.3 and 5.x prior to 5.x-1.3 module for Drupal allows remote malicious users to inject arbitrary web script or HTML via the Title field when editing a page. NOTE: some details were obtained from third party information.

Vulnerability Trend

Vulnerable Product Search on Vulmon Subscribe to Product

drupal drupal mysite 5

drupal drupal mysite 4.7