CVE-2011-1066: XSS
Cross-site scripting (XSS) vulnerability in the Messaging module 6.x-2.x before 6.x-2.4 and 6.x-4.x before 6.x-4.0-beta8 for Drupal allows remote attackers with administer messaging permissions to inject arbitrary web script or HTML via unspecified vectors.
Affected Software
Remediation
Patch Available
Event History
Frequently Asked Questions
What is the severity of CVE-2011-1066?
CVE-2011-1066 has been classified as a moderate severity vulnerability due to its potential for XSS attacks.
How do I fix CVE-2011-1066?
To fix CVE-2011-1066, upgrade the Reyero Messaging module to version 6.x-2.4 or 6.x-4.0-beta8 or later.
Who is affected by CVE-2011-1066?
CVE-2011-1066 affects users of the Reyero Messaging module versions 6.x-2.0 through 6.x-2.3 and 6.x-4.x before beta8.
What type of vulnerability is CVE-2011-1066?
CVE-2011-1066 is classified as a Cross-site Scripting (XSS) vulnerability.
Can CVE-2011-1066 be exploited remotely?
Yes, CVE-2011-1066 can be exploited remotely by attackers with administer messaging permissions.