Vulnerability Database

289,697

Total vulnerabilities in the database

CVE-2009-1823

Cross-site scripting (XSS) vulnerability in the Print (aka Printer, e-mail and PDF versions) module 5.x before 5.x-4.7 and 6.x before 6.x-1.7, a module for Drupal, allows remote attackers to inject arbitrary web script or HTML by modifying a document head, before the Content-Type META element, to contain crafted UTF-8 byte sequences that are treated as UTF-7 by Internet Explorer 6 and 7, a related issue to CVE-2009-1575.

  • Published: May 29, 2009
  • Updated: Apr 13, 2023
  • CVE: CVE-2009-1823
  • Severity: Low
  • Exploit:

CVSS v2:

  • Severity: Low
  • Score: 2.6
  • AV:N/AC:H/Au:N/C:N/I:P/A:N
Software From Fixed in
drupal / print 5.x 5.x.x
drupal / print 5.x-1.0 5.x-1.0.x
drupal / print 5.x-1.1 5.x-1.1.x
drupal / print 5.x-1.2 5.x-1.2.x
drupal / print 5.x-1.x-dev 5.x-1.x-dev.x
drupal / print 5.x-2.1 5.x-2.1.x
drupal / print 5.x-2.2 5.x-2.2.x
drupal / print 5.x-2.x-dev 5.x-2.x-dev.x
drupal / print 5.x-3.0 5.x-3.0.x
drupal / print 5.x-3.1 5.x-3.1.x
drupal / print 5.x-3.2 5.x-3.2.x
drupal / print 5.x-3.3 5.x-3.3.x
drupal / print 5.x-3.4 5.x-3.4.x
drupal / print 5.x-3.5 5.x-3.5.x
drupal / print 5.x-3.6 5.x-3.6.x
drupal / print 5.x-3.7 5.x-3.7.x
drupal / print 5.x-4.0 5.x-4.0.x
drupal / print 5.x-4.1 5.x-4.1.x
drupal / print 5.x-4.2 5.x-4.2.x
drupal / print 5.x-4.3 5.x-4.3.x
drupal / print 5.x-4.4 5.x-4.4.x
drupal / print 5.x-4.5 5.x-4.5.x
drupal / print 5.x-4.6 5.x-4.6.x
drupal / print 6.x-1.0 6.x-1.0.x
drupal / print 6.x-1.0-rc3 6.x-1.0-rc3.x
drupal / print 6.x-1.0-rc4 6.x-1.0-rc4.x
drupal / print 6.x-1.0-rc5 6.x-1.0-rc5.x
drupal / print 6.x-1.0-rc8 6.x-1.0-rc8.x
drupal / print 6.x-1.0-rc9 6.x-1.0-rc9.x
drupal / print 6.x-1.1 6.x-1.1.x
drupal / print 6.x-1.2 6.x-1.2.x
drupal / print 6.x-1.3 6.x-1.3.x
drupal / print 6.x-1.4 6.x-1.4.x
drupal / print 6.x-1.5 6.x-1.5.x
drupal / print 6.x-1.6 6.x-1.6.x