VendorsEarl Milesviews6.x-3.x
Vulnerabilities

Earl Miles Views 6.x-3.x

Ranked by severity, then by exploit likelihood. Click a CVE ID for its full record.

3CVEs
CVE-2010-4519
Multiple cross-site request forgery (CSRF) vulnerabilities in the Views UI implementation in the Views module 5.x before 5.x-1.8 and 6.x before 6.x-2.11 for Drupal allow remote attackers to hijack the authentication of administrators for requests that (1) enable all Views or (2) disable all Views.
Published 2010-12-23 · Modified
6.8EPSS 0.006
CVE-2010-4521
Cross-site scripting (XSS) vulnerability in the Views module 6.x before 6.x-2.12 for Drupal allows remote attackers to inject arbitrary web script or HTML via a page path.
Published 2010-12-23 · Modified
4.3EPSS 0.019
CVE-2010-4520
Multiple cross-site scripting (XSS) vulnerabilities in the Views module 6.x before 6.x-2.11 for Drupal allow remote attackers to inject arbitrary web script or HTML via (1) a URL or (2) an aggregator feed title.
Published 2010-12-23 · Modified
4.3EPSS 0.010