Vulnerabilities > Icanlocalize

DATE CVE VULNERABILITY TITLE RISK
2011-04-10 CVE-2011-1664 Cross-Site Request Forgery (CSRF) vulnerability in Icanlocalize Translation Management
Cross-site request forgery (CSRF) vulnerability in the Translation Management module 6.x before 6.x-1.21 for Drupal allows remote attackers to hijack the authentication of unspecified victims via unknown vectors.
6.8
2011-04-10 CVE-2011-1663 SQL Injection vulnerability in Icanlocalize Translation Management
SQL injection vulnerability in the Translation Management module 6.x before 6.x-1.21 for Drupal allows remote attackers to execute arbitrary SQL commands via unspecified vectors.
network
low complexity
icanlocalize drupal CWE-89
7.5
2011-04-10 CVE-2011-1662 Cross-Site Scripting vulnerability in Icanlocalize Translation Management
Cross-site scripting (XSS) vulnerability in Translation Management module 6.x before 6.x-1.21 for Drupal allows remote attackers to inject arbitrary web script or HTML via unspecified vectors.
4.3