Vulnerabilities > Drupal > Drupal Easylinks Module > 4.7.0

DATE CVE VULNERABILITY TITLE RISK
2006-08-27 CVE-2006-4356 SQL Injection vulnerability in Drupal Easylinks Module
SQL injection vulnerability in Drupal Easylinks Module (easylinks.module) 4.7 before 1.5.2.1 2006/08/19 12:02:27 allows remote attackers to execute arbitrary SQL commands via unspecified vectors.
network
low complexity
drupal
7.5
2006-08-27 CVE-2006-4355 Cross-Site Scripting vulnerability in Drupal Easylinks Module
Cross-site scripting (XSS) vulnerability in Drupal Easylinks Module (easylinks.module) 4.7 before 1.5.2.1 2006/08/19 12:02:27 allows remote attackers to inject arbitrary web script or HTML via unspecified vectors.
network
high complexity
drupal
2.6