Unrated severityNVD Advisory· Published Sep 23, 2006· Updated Jun 16, 2026
CVE-2006-4947
CVE-2006-4947
Description
Cross-site scripting (XSS) vulnerability in the Drupal 4.7 Search Keywords module before 1.15 2006/09/15 allows remote attackers to inject arbitrary web script or HTML via unspecified vectors related to "lack of validation on output."
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
5cpe:2.3:a:drupal:search_keyword_module:*:*:*:*:*:*:*:*+ 4 more
- cpe:2.3:a:drupal:search_keyword_module:*:*:*:*:*:*:*:*range: <=1.15
- cpe:2.3:a:drupal:search_keyword_module:1.12:*:*:*:*:*:*:*
- cpe:2.3:a:drupal:search_keyword_module:1.13:*:*:*:*:*:*:*
- cpe:2.3:a:drupal:search_keyword_module:1.14:*:*:*:*:*:*:*
- (no CPE)range: <1.15
Patches
Vulnerability mechanics
References
5- drupal.org/node/85050nvdPatchVendor Advisory
- secunia.com/advisories/22021nvdPatchVendor Advisory
- www.securityfocus.com/bid/20126nvdPatch
- www.vupen.com/english/advisories/2006/3715nvd
- exchange.xforce.ibmcloud.com/vulnerabilities/29063nvd
News mentions
0No linked articles in our index yet.