Biztonsági figyelmeztetések

SA-CONTRIB-2010-026 - Monthly Archive by Node Type - Access Bypass

Biztonsági figyelmeztetések (contrib) - 2010. március 10. 17.52
  • Advisory ID: DRUPAL-SA-CONTRIB-2010-026
  • Project: Monthly Archive by Node Type (third-party module)
  • Version: 6.x (all branches)
  • Date: 2010-March-10
  • Security risk: Less Critical
  • Exploitable from: Remote
  • Vulnerability: Access Bypass

SA-CONTRIB-2010-025 - TinyMCE - Cross Site Scripting (XSS)

Biztonsági figyelmeztetések (contrib) - 2010. március 10. 15.20
  • Advisory ID: DRUPAL-SA-CONTRIB-2010-025
  • Project: TinyMCE (third-party module)
  • Version: 5.x
  • Date: 2010-March-09
  • Security risk: Less Critical
  • Exploitable from: Remote
  • Vulnerability: Cross Site Scripting

SA-CORE-2010-001 - Drupal core - Multiple vulnerabilities

Biztonsági figyelmeztetések (core) - 2010. március 3. 20.31
  • Advisory ID: DRUPAL-SA-CORE-2010-001
  • Project: Drupal core
  • Version: 5.x, 6.x
  • Date: 2010-March-03
  • Security risk: Critical
  • Exploitable from: Remote
  • Vulnerability: Multiple vulnerabilities

SA-CONTRIB-2010-024 - eTracker - Cross Site Scripting

Biztonsági figyelmeztetések (contrib) - 2010. március 3. 20.01
  • Advisory ID: DRUPAL-SA-CONTRIB-2010-024
  • Project: eTracker (third-party module)
  • Version: 6.x-1.1
  • Date: 2010-March-03
  • Security risk: Moderately Critical
  • Exploitable from: Remote
  • Vulnerability: Cross Site Scripting

SA-CONTRIB-2010-023 - Workflow - Cross Site Scripting

Biztonsági figyelmeztetések (contrib) - 2010. március 3. 19.37
  • Advisory ID: DRUPAL-SA-CONTRIB-2010-023
  • Project: Workflow (third-party module)
  • Version: 6.x, 5.x
  • Date: 2010-March-03
  • Security risk: Less Critical
  • Exploitable from: Remote
  • Vulnerability: Cross Site Scripting

SA-CONTRIB-2010-022 - Internationalization - Arbitrary code execution

Biztonsági figyelmeztetések (contrib) - 2010. március 3. 19.28
  • Advisory ID: DRUPAL-SA-CONTRIB-2010-022
  • Project: Internationalization (third-party module)
  • Version: 6.x-1.x 5.x-2.x
  • Date: 2010-March-03
  • Security risk: Highly Critical
  • Exploitable from: Remote
  • Vulnerability: Arbitrary code execution

SA-CONTRIB-2010-021 - AddThis Button - Cross Site Scripting

Biztonsági figyelmeztetések (contrib) - 2010. március 3. 18.36
  • Advisory ID: DRUPAL-SA-CONTRIB-2010-021
  • Project: AddThis Button (third-party module)
  • Version: 6.x, 5.x
  • Date: 2010-March-03
  • Security risk: Less Critical
  • Exploitable from: Remote
  • Vulnerability: Cross Site Scripting

SA-CONTRIB-2010-020 - Facebook-style Statuses (Microblog) - Access bypass

Biztonsági figyelmeztetések (contrib) - 2010. február 24. 23.26
  • Advisory ID: DRUPAL-SA-CONTRIB-2010-020
  • Project: Facebook-style Statuses (Microblog) (third-party module)
  • Version: 6.x-2.x
  • Date: 2010-February-24
  • Security risk: Not Critical
  • Exploitable from: Remote
  • Vulnerability: Access bypass

SA-CONTRIB-2010-019 - Weekly Archive by Node Type - Access Bypass

Biztonsági figyelmeztetések (contrib) - 2010. február 24. 17.17
  • Advisory ID: DRUPAL-SA-CONTRIB-2010-019
  • Project: Weekly Archive by Node Type (third-party module)
  • Version: 6.x-2.x
  • Date: 2010-February-24
  • Security risk: Less Critical
  • Exploitable from: Remote
  • Vulnerability: Access Bypass

SA-CONTRIB-2010-018 - Content Distribution - Multiple Vulnerabilities

Biztonsági figyelmeztetések (contrib) - 2010. február 17. 23.37
  • Advisory ID: DRUPAL-SA-CONTRIB-2010-018
  • Project: Content Distribution (third-party module)
  • Version: 6.x
  • Date: 2010 February 17
  • Security risk: Moderately Critical
  • Exploitable from: Remote
  • Vulnerability: Mulitple Vulnerabilities

SA-CONTRIB-2010-017 - iTweak Upload - Cross Site Scripting

Biztonsági figyelmeztetések (contrib) - 2010. február 17. 19.19
  • Advisory ID: DRUPAL-SA-CONTRIB-2010-017
  • Project: iTweak Upload (third-party module)
  • Version: 6.x
  • Date: 2010 February 17
  • Security risk: Less critical
  • Exploitable from: Remote
  • Vulnerability: Cross Site Scripting

SA-CONTRIB-2010-016 - Graphviz Filter - arbitrary code execution

Biztonsági figyelmeztetések (contrib) - 2010. február 11. 00.11
  • Advisory ID: DRUPAL-SA-CONTRIB-2010-016
  • Project: Graphviz Filter (third-party module)
  • Version: 6.x, 5.x
  • Date: 2010 February 10
  • Security risk: Highly critical
  • Exploitable from: Remote
  • Vulnerability: Arbitrary code execution

SA-CONTRIB-2010-015 - Signwriter - Arbitrary code execution

Biztonsági figyelmeztetések (contrib) - 2010. február 3. 21.03
  • Advisory ID: DRUPAL-SA-CONTRIB-2010-015
  • Project: Signwriter (third-party module)
  • Version: 5.x, 6.x
  • Date: 2010-February-3
  • Security risk: Critical
  • Exploitable from: Remote
  • Vulnerability: Arbitrary code execution

SA-CONTRIB-2010-014 - Node Export - Arbitrary code execution

Biztonsági figyelmeztetések (contrib) - 2010. február 3. 20.01
  • Advisory ID: DRUPAL-SA-CONTRIB-2010-014
  • Project: Node Export (third-party module)
  • Version: 5.x, 6.x
  • Date: 2010-February-3
  • Security risk: Less critical
  • Exploitable from: Remote
  • Vulnerability: Arbitrary code execution

SA-CONTRIB-2010-013 - Menu Breadcrumb - Cross site scripting

Biztonsági figyelmeztetések (contrib) - 2010. február 3. 17.19
  • Advisory ID: DRUPAL-SA-CONTRIB-2010-013
  • Project: Menu Breadcrumb (third-party module)
  • Version: 6.x
  • Date: 2010-February-03
  • Security risk: Less critical
  • Exploitable from: Remote
  • Vulnerability: Cross Site Scripting

SA-CONTRIB-2010-012 - ODF Import - Access Bypass (possible Cross Site Scripting)

Biztonsági figyelmeztetések (contrib) - 2010. február 3. 16.44
  • Advisory ID: DRUPAL-SA-CONTRIB-2010-012
  • Project: ODF Import (third-party module)
  • Version: 6.x-1.0
  • Date: 2010-February-3
  • Security risk: Moderately critical
  • Exploitable from: Remote
  • Vulnerability: Cross Site Scripting

SA-CONTRIB-2010-011 - Feedback - Cross Site Scripting

Biztonsági figyelmeztetések (contrib) - 2010. január 27. 23.50
  • Advisory ID: DRUPAL-SA-CONTRIB-2010-011
  • Project: Feedback (third-party module)
  • Version: 5.x, 6.x
  • Date: 2010-January-27
  • Security risk: Moderately critical
  • Exploitable from: Remote
  • Vulnerability: Cross Site Scripting

SA-CONTRIB-2010-010 - Author Contact - Cross site scripting

Biztonsági figyelmeztetések (contrib) - 2010. január 27. 21.28
  • Advisory ID: DRUPAL-SA-CONTRIB-2010-010
  • Project: Author Contact (third-party module)
  • Version: 5.x, 6.x
  • Date: 2010-January-27
  • Security risk: Less critical
  • Exploitable from: Remote
  • Vulnerability: Cross Site Scripting

SA-CONTRIB-2010-009 - Block Class - Cross Site Scripting

Biztonsági figyelmeztetések (contrib) - 2010. január 20. 19.51
  • Advisory ID: DRUPAL-SA-CONTRIB-2010-009
  • Project: Block Class (third-party module)
  • Version: 6.x-1.2, 5.x-1.1
  • Date: 2010-January-20
  • Security risk: Less critical
  • Exploitable from: Remote
  • Vulnerability: Cross Site Scripting

SA-CONTRIB-2010-008 - Recent Comments - Cross Site Scripting

Biztonsági figyelmeztetések (contrib) - 2010. január 20. 19.36
  • Advisory ID: DRUPAL-SA-CONTRIB-2010-008
  • Project: Recent Comments (third-party module)
  • Version: 6.x-1.0, 5.x-1.2
  • Date: 2010-January-20
  • Security risk: Less Critical
  • Exploitable from: Remote
  • Vulnerability: Cross Site Scripting