3.5
CVSSv2

CVE-2009-3206

Published: 16/09/2009 Updated: 17/08/2017
CVSS v2 Base Score: 3.5 | Impact Score: 2.9 | Exploitability Score: 6.8
VMScore: 312
Vector: AV:N/AC:M/Au:S/C:N/I:P/A:N

Vulnerability Summary

Multiple cross-site scripting (XSS) vulnerabilities in the ImageCache module 5.x prior to 5.x-2.5 and 6.x prior to 6.x-2.0-beta10, a module for Drupal, allow remote authenticated users, with "administer imagecache" permissions, to inject arbitrary web script or HTML via unspecified vectors.

Vulnerable Product Search on Vulmon Subscribe to Product

drewish imagecache 5.x-1.6

drewish imagecache 5.x-2.1

drewish imagecache 6.x-2.0

drewish imagecache 5.x-1.x

drewish imagecache 5.x-2.0

drewish imagecache 5.x-1.0

drewish imagecache 5.x-1.7

drewish imagecache 5.x-2.3

drewish imagecache 5.x-2.2

drewish imagecache 5.x-2.x

drewish imagecache 5.x-1.3

drewish imagecache 6.x-1.0

drewish imagecache 5.x-1.4

drewish imagecache 5.x-1.1

drewish imagecache 5.x-1.2

drewish imagecache 5.x-2.4

drewish imagecache 6.x-2.x-dev

drewish imagecache 5.x-1.5