VendorsDrupalnews_page5.x-1.1
Vulnerabilities

Drupal News Page 5.x-1.1

Ranked by severity, then by exploit likelihood. Click a CVE ID for its full record.

1CVEs
CVE-2009-1505
SQL injection vulnerability in the News Page module 5.x before 5.x-1.2 for Drupal allows remote authenticated users, with News Page nodes create and edit privileges, to execute arbitrary SQL commands via the Include Words (aka keywords) field.
Published 2009-05-01 · Modified
6.5EPSS 0.011