CVE-2009-3914
Published Nov 9, 2009
Last updated 7 years ago
Overview
- Description
- Cross-site scripting (XSS) vulnerability in the Temporary Invitation module 5.x before 5.x-2.3 for Drupal allows remote attackers to inject arbitrary web script or HTML via the Name field in an invitation.
- Source
- cve@mitre.org
- NVD status
- Modified
Social media
- Hype score
- Not currently trending
Risk scores
CVSS 2.0
- Type
- Primary
- Base score
- 4.3
- Impact score
- 2.9
- Exploitability score
- 8.6
- Vector string
- AV:N/AC:M/Au:N/C:N/I:P/A:N
Weaknesses
- nvd@nist.gov
- CWE-79
Configurations
[ { "nodes": [ { "negate": false, "cpeMatch": [ { "criteria": "cpe:2.3:a:drupal:drupal:*:*:*:*:*:*:*:*", "vulnerable": false, "matchCriteriaId": "799CA80B-F3FA-4183-A791-2071A7DA1E54" } ], "operator": "OR" }, { "negate": false, "cpeMatch": [ { "criteria": "cpe:2.3:a:wolfgang_ziegler:temporary_invitation:5.x-1.0:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "3432E672-ED5A-4D48-98CE-B1ADE1181C45" }, { "criteria": "cpe:2.3:a:wolfgang_ziegler:temporary_invitation:5.x-1.1:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "74CE2256-31D8-438B-922B-6C7349123285" }, { "criteria": "cpe:2.3:a:wolfgang_ziegler:temporary_invitation:5.x-1.2:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "AFF53DBF-4685-46B8-B3FE-3EF79AC3FA6C" }, { "criteria": "cpe:2.3:a:wolfgang_ziegler:temporary_invitation:5.x-1.3:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "5BBC30EF-B0CF-4EB2-9A23-AE6C946C8AF6" }, { "criteria": "cpe:2.3:a:wolfgang_ziegler:temporary_invitation:5.x-1.4:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "4E6AC0DB-AB0E-47EE-A7A9-2D99F5AD3A4F" }, { "criteria": "cpe:2.3:a:wolfgang_ziegler:temporary_invitation:5.x-1.5:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "206A8901-CE14-406F-A4CA-DF6D3FF68EF5" }, { "criteria": "cpe:2.3:a:wolfgang_ziegler:temporary_invitation:5.x-1.6:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "5010EC2F-53B0-45EF-A78C-190A86679AF4" }, { "criteria": "cpe:2.3:a:wolfgang_ziegler:temporary_invitation:5.x-1.7:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "173726BF-B29A-4722-AF5F-21431794EDA3" }, { "criteria": "cpe:2.3:a:wolfgang_ziegler:temporary_invitation:5.x-1.8:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "D1574275-E4BA-43FE-9F7E-733F915DAA30" }, { "criteria": "cpe:2.3:a:wolfgang_ziegler:temporary_invitation:5.x-1.9:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "220868CE-750B-4335-BE9B-8B77A22EFDD5" }, { "criteria": "cpe:2.3:a:wolfgang_ziegler:temporary_invitation:5.x-1.10:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "36FAAB42-8CEA-4F9E-A76C-B8DB5B30FB42" }, { "criteria": "cpe:2.3:a:wolfgang_ziegler:temporary_invitation:5.x-1.x-dev:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "14D3DFA9-4987-4164-AD3E-8A800E0D0D14" }, { "criteria": "cpe:2.3:a:wolfgang_ziegler:temporary_invitation:5.x-2.0:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "27C44E14-697B-4CEA-B157-758F81C4FE9A" }, { "criteria": "cpe:2.3:a:wolfgang_ziegler:temporary_invitation:5.x-2.0:rc1:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "977BF300-7813-4247-9533-5B87482DA918" }, { "criteria": "cpe:2.3:a:wolfgang_ziegler:temporary_invitation:5.x-2.0:rc2:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "1F64313F-5F0F-4A80-B899-EA3B3EBD7A44" }, { "criteria": "cpe:2.3:a:wolfgang_ziegler:temporary_invitation:5.x-2.0:rc3:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "248BD01C-E0C9-4C24-97BF-E1260351CC50" }, { "criteria": "cpe:2.3:a:wolfgang_ziegler:temporary_invitation:5.x-2.0:rc4:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "0CD658B7-98B3-4E8C-8C40-DC79FFEF6BF6" }, { "criteria": "cpe:2.3:a:wolfgang_ziegler:temporary_invitation:5.x-2.0:rc5:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "A6999142-EE04-4D94-8A43-93B12BC2C2DB" }, { "criteria": "cpe:2.3:a:wolfgang_ziegler:temporary_invitation:5.x-2.0:rc6:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "53025B5C-F42C-4C7E-9779-B55D0AD05D04" }, { "criteria": "cpe:2.3:a:wolfgang_ziegler:temporary_invitation:5.x-2.0:rc7:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "3CB87FEE-6176-4DA5-B10D-541A192FB7B4" }, { "criteria": "cpe:2.3:a:wolfgang_ziegler:temporary_invitation:5.x-2.1:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "7F2F3457-DF74-40D2-B3E7-92F055BE6D86" }, { "criteria": "cpe:2.3:a:wolfgang_ziegler:temporary_invitation:5.x-2.2:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "04809EFE-ED43-46CC-A30A-DA09E7EBAE64" } ], "operator": "OR" } ], "operator": "AND" } ]