CVE-2009-1942: XSS
Cross-site scripting (XSS) vulnerability in the Quiz module 5.x, 6.x-2.x before 6.x-2.2, and 6.x-3.x before 6.x-3.0, a module for Drupal, allows remote authenticated users, with create quizzes or quiz questions access, to inject arbitrary web script or HTML via unspecified vectors.
Affected Software
Remediation
Patch Available
Patch Available
Patch Available
Patch Available
Event History
Frequently Asked Questions
What is the severity of CVE-2009-1942?
CVE-2009-1942 is classified as a high severity vulnerability due to its potential for exploitation via cross-site scripting.
How can I fix CVE-2009-1942?
To mitigate CVE-2009-1942, upgrade the Quiz module to versions 6.x-2.2 or 6.x-3.0 and higher.
Which versions are affected by CVE-2009-1942?
CVE-2009-1942 affects the Quiz module versions 5.x, 6.x-2.x before 6.x-2.2, and 6.x-3.x before 6.x-3.0.
What impact does CVE-2009-1942 have on my website?
CVE-2009-1942 allows remote authenticated users to inject arbitrary web scripts or HTML, potentially compromising site security.
Who is primarily affected by CVE-2009-1942?
Remote authenticated users with access to create quizzes or quiz questions are the primary users affected by CVE-2009-1942.