CVE-2008-3091: XSS
Cross-site scripting (XSS) vulnerability in the Taxonomy Autotagger module 5.x before 5.x-1.8 for Drupal allows remote authenticated users, with create or edit post permissions, to inject arbitrary web script or HTML via unspecified vectors.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2008-3091?
CVE-2008-3091 is considered a medium severity vulnerability due to its potential for cross-site scripting attacks.
How do I fix CVE-2008-3091?
To fix CVE-2008-3091, upgrade the Taxonomy Autotagger module to version 5.x-1.8 or later.
Who is affected by CVE-2008-3091?
CVE-2008-3091 affects remote authenticated users of the Taxonomy Autotagger module on Drupal 5.x prior to version 5.x-1.8.
What types of attacks can exploit CVE-2008-3091?
CVE-2008-3091 can be exploited to perform cross-site scripting attacks, allowing attackers to inject arbitrary web scripts or HTML.
Can CVE-2008-3091 affect the overall security of my website?
Yes, if exploited, CVE-2008-3091 could compromise user sessions and lead to unauthorized actions within your Drupal site.