Total vulnerabilities in the database
SQL injection vulnerability in the conversion form for Events in the Date module 6.x-2.x before 6.x-2.8 for Drupal allows remote authenticated users with the "administer Date Tools" privilege to execute arbitrary SQL commands via unspecified vectors.
Software | From | Fixed in |
---|---|---|
karen_stevenson / date | 6.x-2.0-rc4 | 6.x-2.0-rc4.x |
karen_stevenson / date | 6.x-2.0-rc2 | 6.x-2.0-rc2.x |
karen_stevenson / date | 6.x-2.0-beta4 | 6.x-2.0-beta4.x |
karen_stevenson / date | 6.x-2.0-rc3 | 6.x-2.0-rc3.x |
karen_stevenson / date | 6.x-2.0-beta2 | 6.x-2.0-beta2.x |
karen_stevenson / date | 6.x-2.0-rc5 | 6.x-2.0-rc5.x |
karen_stevenson / date | 6.x-2.0-rc6 | 6.x-2.0-rc6.x |
karen_stevenson / date | 6.x-2.0-beta | 6.x-2.0-beta.x |
karen_stevenson / date | 6.x-2.0-beta3 | 6.x-2.0-beta3.x |
karen_stevenson / date | 6.x-2.0 | 6.x-2.0.x |
karen_stevenson / date | 6.x-2.0-rc1 | 6.x-2.0-rc1.x |
karen_stevenson / date | 6.x-2.1 | 6.x-2.1.x |
karen_stevenson / date | 6.x-2.2 | 6.x-2.2.x |
karen_stevenson / date | 6.x-2.3 | 6.x-2.3.x |
karen_stevenson / date | 6.x-2.4 | 6.x-2.4.x |
karen_stevenson / date | 6.x-2.5 | 6.x-2.5.x |
karen_stevenson / date | 6.x-2.6 | 6.x-2.6.x |
karen_stevenson / date | 6.x-2.7 | 6.x-2.7.x |
karen_stevenson / date | 6.x-2.x-dev | 6.x-2.x-dev.x |