Vulnerabilities > Reyero

DATE CVE VULNERABILITY TITLE RISK
2011-02-23 CVE-2011-1066 Cross-Site Scripting vulnerability in Reyero Messaging
Cross-site scripting (XSS) vulnerability in the Messaging module 6.x-2.x before 6.x-2.4 and 6.x-4.x before 6.x-4.0-beta8 for Drupal allows remote attackers with administer messaging permissions to inject arbitrary web script or HTML via unspecified vectors.
network
high complexity
reyero drupal CWE-79
2.6
2010-04-26 CVE-2010-1530 Cross-Site Scripting vulnerability in Reyero I18N
Multiple cross-site scripting (XSS) vulnerabilities in the Internationalization module 6.x before 6.x-1.4 for Drupal allow remote authenticated users, with translate interface or administer blocks privileges, to inject arbitrary web script or HTML via (1) strings used in block translation or (2) the untranslated input.
network
high complexity
reyero drupal CWE-79
2.1