drupal

509 tracked vulnerabilities.

CVE-2006-0070
Drupal - Cross-Site Scripting via Encoded JavaScript in IMG Tag
Jan 04, 2006
EPSS 0.01
CVE-2005-3973
Drupal 4.5.0-4.5.5 and 4.6.0-4.6.3 - Cross-Site Scripting via HTML Tag Injection
Dec 03, 2005
EPSS 0.01
CVE-2005-3974
Drupal <4.5.5, <4.6.3 - Privilege Escalation
Dec 03, 2005
EPSS 0.01
CVE-2005-3975
Drupal 4.5.0-4.5.5 & 4.6.0-4.6.3 - XSS
Dec 03, 2005
EPSS 0.01
CVE-2005-1921
PEAR XML_RPC < 1.3.0 and PHPXMLRPC < 1.1 - Remote Code Execution via Unsanitized XML Input
Jul 05, 2005
EPSS 0.86
CVE-2005-2106
Drupal 4.5.0-4.5.3, 4.6.0-4.6.1 - Remote Code Execution via Public Comment or Posting
Jul 05, 2005
EPSS 0.05
CVE-2005-1871
Drupal 4.4.0-4.6.0 - Unauthenticated Privilege Escalation via Improper Input Validation
Jun 09, 2005
EPSS 0.01
CVE-2005-0682
Drupal < 4.5.2 - Cross-Site Scripting via Common.inc Inputs
May 02, 2005
EPSS 0.00
CVE-2002-1806
Drupal 4.0.0 - Cross-Site Scripting via IMG Tag Javascript
Dec 31, 2002
EPSS 0.03