Friday, September 24, 2010

New drupal6 packages: fix several vulnerabilities

Users of New drupal6 packages please be advised of fix several vulnerabilities that has been identified.

To view this vulnerability, possible remedies, and others please check out the Security Advisories at Critical Watch (http://criticalwatch.com/support/security-advisories.aspx)

Amplify’d from www.criticalwatch.com
DSA 2113-1: [DSA 2113-1] New drupal6 packages fix several vulnerabilities
Several vulnerabilities have been discovered in drupal6 a fully-featured

content management framework. The Common Vulnerabilities and Exposures

project identifies the following problems:


Several issues have been discovered in the OpenID module that allows

malicious access to user accounts.
Several cross-site scripting (XSS) issues have been discovered in the

Action feature.


Read more at www.criticalwatch.com
 

No comments:

Post a Comment