CVE | CVE-2008-10004 |
CVE Title | |
Published Date | 2023-03-06T23:15Z |
Modified Date | 2023-03-13T17:43Z |
CWE Type | CWE-89 |
CVSS 3.x | CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H |
Description | A vulnerability was found in Email Registration 5.x-2.1. It has been declared as critical. This vulnerability affects the function email_registration_user of the file email_registration.module. The manipulation of the argument namenew leads to sql injection. The attack can be initiated remotely. Upgrading to version 6.x-1.0 is able to address this issue. The name of the patch is 126c141b7db038c778a2dc931d38766aad8d1112. It is recommended to upgrade the affected component. VDB-222334 is the identifier assigned to this vulnerability. |
References | |
By clicking these links you will leave this website. We do not endorse and will not be held accountable for any activity on external sites. | |
Reference URL | https://github.com/drupalprojects/email_registration/commit/126c141b7db038c778a2dc931d38766aad8d1112 |
Reference Description | MISC https://github.com/drupalprojects/email_registration/commit/126c141b7db038c778a2dc931d38766aad8d1112 |
Reference URL | https://github.com/drupalprojects/email_registration/releases/tag/6.x-1.0 |
Reference Description | MISC https://github.com/drupalprojects/email_registration/releases/tag/6.x-1.0 |
Reference URL | https://vuldb.com/?ctiid.222334 |
Reference Description | MISC https://vuldb.com/?ctiid.222334 |
Reference URL | https://vuldb.com/?id.222334 |
Reference Description | MISC https://vuldb.com/?id.222334 |
Tags | Patch |
Sources | NIST MITRE |