CVE-2007-5270

Severity CVSS v4.0:
Pending analysis
Type:
Unavailable / Other
Publication date:
08/10/2007
Last modified:
09/04/2025

Description

Unspecified vulnerability in the Boost module before 4.7.x-1.0, and 5.x before 5.x-1.0, for Drupal allows remote attackers to create or overwrite arbitrary files, and conduct cross-site scripting attacks (XSS) via unspecified vectors.

Vulnerable products and versions

CPE From Up to
cpe:2.3:a:bendiken:boost_module_for_drupal:*:*:*:*:*:*:*:* 4.7.-1.0 (including)
cpe:2.3:a:bendiken:boost_module_for_drupal:*:*:*:*:*:*:*:* 5.-1.0 (including)