Home
Trends
Vulnerabilities
News
Researchers
Why dbugs?

Jonathan Smith

#22152of 53,630
10.3Total CVSS
Vulnerabilities · 2
Low
1
Medium
1
PT-2015-6949
3.5
2015-08-18
Drupal · Drupal Web Links Module · CVE-2015-5497
**Name of the Vulnerable Software and Affected Versions** Drupal Web Links module versions 6.x-2.x through 6.x-2.5 Drupal Web Links module versions 7.x-1.x through 7.x-1.0 **Description** A cross-site scripting (XSS) issue exists, allowing remote authenticated users with specific permissions to inject arbitrary web script or HTML. **Recommendations** For Drupal Web Links module versions 6.x-2.x through 6.x-2.5, update to version 6.x-2.6 or later. For Drupal Web Links module versions 7.x-1.x through 7.x-1.0, update to version 7.x-1.0 or later.
PT-2008-3845
6.8
2008-05-21
Mtr · Mtr · CVE-2008-2357
Name of the Vulnerable Software and Affected Versions: mtr versions prior to 0.73 Description: A stack-based buffer overflow issue exists in the split redraw function when invoked with the -p option, allowing remote attackers to execute arbitrary code via a crafted DNS PTR record. Recommendations: For versions prior to 0.73, update to version 0.73 or later to resolve the issue. As a temporary workaround, consider avoiding the use of the -p option until the issue is resolved.