CVE-2015-6659 on Ubuntu 12.04 LTS (precise) - medium.
Description:
SQL injection vulnerability in the SQL comment filtering system in the Database API in Drupal 7.x before 7.39 allows remote attackers to execute arbitrary SQL commands via an SQL comment.