VYPR

project module

by Drupal

CVEs (2)

  • CVE-2007-4436Aug 20, 2007
    risk 0.00cvss epss 0.01

    The Drupal Project module before 5.x-1.0, 4.7.x-2.3, and 4.7.x-1.3 and Project issue tracking module before 5.x-1.0, 4.7.x-2.4, and 4.7.x-1.4 do not properly enforce permissions, which allows remote attackers to (1) obtain sensitive via the Tracker Module and the Recent posts…

  • CVE-2006-2260May 9, 2006
    risk 0.00cvss epss 0.01

    Cross-site scripting (XSS) vulnerability in the project module (project.module) in Drupal 4.5 and 4.6 allows remote attackers to inject arbitrary web script or HTML via unknown attack vectors.