CVE-2010-1530: XSS
Multiple cross-site scripting (XSS) vulnerabilities in the Internationalization module 6.x before 6.x-1.4 for Drupal allow remote authenticated users, with translate interface or administer blocks privileges, to inject arbitrary web script or HTML via (1) strings used in block translation or (2) the untranslated input.
Affected Software
Remediation
Patch Available
Patch Available
Patch Available
Event History
Frequently Asked Questions
What is the severity of CVE-2010-1530?
CVE-2010-1530 is classified as a moderate severity vulnerability due to its potential for cross-site scripting attacks.
How do I fix CVE-2010-1530?
To fix CVE-2010-1530, update the Internationalization module to version 6.x-1.4 or later.
Who is affected by CVE-2010-1530?
Remote authenticated users with translate interface or administer blocks privileges are affected by CVE-2010-1530.
What types of attacks can CVE-2010-1530 facilitate?
CVE-2010-1530 can facilitate cross-site scripting (XSS) attacks, allowing attackers to inject arbitrary web scripts or HTML.
What versions of the Internationalization module are vulnerable to CVE-2010-1530?
The vulnerable versions of the Internationalization module are 6.x before 6.x-1.4.