FreeBSD : drupal -- XSS vulnerability (c905298c-2274-11db-896e-000ae42e9b93)

high Nessus Plugin ID 22140

Synopsis

The remote FreeBSD host is missing a security-related update.

Description

The Drupal project reports :

A malicious user can execute a cross site scripting attack by enticing someone to visit a Drupal site via a specially crafted link.

Solution

Update the affected package.

See Also

http://drupal.org/files/sa-2006-011/advisory.txt

http://www.nessus.org/u?56e277fc

Plugin Details

Severity: High

ID: 22140

File Name: freebsd_pkg_c905298c227411db896e000ae42e9b93.nasl

Version: 1.12

Type: local

Published: 8/4/2006

Updated: 1/6/2021

Supported Sensors: Nessus

Vulnerability Information

CPE: p-cpe:/a:freebsd:freebsd:drupal, cpe:/o:freebsd:freebsd

Required KB Items: Host/local_checks_enabled, Host/FreeBSD/release, Host/FreeBSD/pkg_info

Patch Publication Date: 8/2/2006

Vulnerability Publication Date: 8/2/2006