Vulnerability Name: | CVE-2005-3975 (CCN-23472) | ||||||||
Assigned: | 2005-12-01 | ||||||||
Published: | 2005-12-01 | ||||||||
Updated: | 2018-10-19 | ||||||||
Summary: | Interpretation conflict in file.inc in Drupal 4.5.0 through 4.5.5 and 4.6.0 through 4.6.3 allows remote authenticated users to inject arbitrary web script or HTML via HTML in a file with a GIF or JPEG file extension, which causes the HTML to be executed by a victim who views the file in Internet Explorer as a result of CVE-2005-3312. Note: it could be argued that this vulnerability is due to a design flaw in Internet Explorer and the proper fix should be in that browser; if so, then this should not be treated as a vulnerability in Drupal. | ||||||||
CVSS v3 Severity: | 3.5 Low (CCN CVSS v3.1 Vector: CVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:U/C:N/I:L/A:N)
| ||||||||
CVSS v2 Severity: | 4.0 Medium (CVSS v2 Vector: AV:N/AC:L/Au:S/C:N/I:P/A:N)
| ||||||||
Vulnerability Type: | CWE-Other | ||||||||
Vulnerability Consequences: | Gain Access | ||||||||
References: | Source: CCN Type: Full-Disclosure Mailing List, Thu Dec 01 2005 - 09:45:49 CST [DRUPAL-SA-2005-007] Drupal 4.6.4 / 4.5.6 fixes XSS issue Source: CCN Type: Full-Disclosure Mailing List, Thu Dec 01 2005 - 09:45:58 CST [DRUPAL-SA-2005-008] Drupal 4.6.4 / 4.5.6 fixes XSS and HTTP header injection issue Source: MITRE Type: CNA CVE-2005-3975 Source: MISC Type: UNKNOWN http://drupal.org/files/sa-2005-008/4.6.3.patch Source: CONFIRM Type: Patch, Vendor Advisory http://drupal.org/files/sa-2005-008/advisory.txt Source: CCN Type: Drupal Web site Drupal Source: CCN Type: SA17824 Drupal Multiple Vulnerabilities Source: SECUNIA Type: Patch, Vendor Advisory 17824 Source: SECUNIA Type: UNKNOWN 18630 Source: SREASON Type: UNKNOWN 220 Source: DEBIAN Type: UNKNOWN DSA-958 Source: DEBIAN Type: DSA-958 drupal -- several vulnerabilities Source: BUGTRAQ Type: UNKNOWN 20051201 [DRUPAL-SA-2005-008] Drupal 4.6.4 / 4.5.6 fixes XSS and HTTP header injection issue Source: BID Type: Patch 15663 Source: CCN Type: BID-15663 Drupal Image Upload HTML Injection Vulnerability Source: VUPEN Type: UNKNOWN ADV-2005-2684 Source: XF Type: UNKNOWN drupal-unknown-xss(23472) | ||||||||
Vulnerable Configuration: | Configuration 1: Denotes that component is vulnerable | ||||||||
Oval Definitions | |||||||||
| |||||||||
BACK |