Vulnerabilities
Vulnerable Software
Drupal:  >> User Karma Module  Security Vulnerabilities
Cross-site scripting (XSS) vulnerability in the User Karma module 5.x before 5.x-1.13 and 6.x before 6.x-1.0-beta1, a module for Drupal, allows remote attackers to inject arbitrary web script or HTML via unspecified messages.
CVSS Score
4.3
EPSS Score
0.004
Published
2009-02-25
Multiple SQL injection vulnerabilities in the User Karma module 5.x before 5.x-1.13 and 6.x before 6.x-1.0-beta1, a module for Drupal, allow remote authenticated administrators to execute arbitrary SQL commands via (1) a content type or (2) a voting API value.
CVSS Score
6.5
EPSS Score
0.004
Published
2009-02-25


Contact Us

Shodan ® - All rights reserved