Language:
https://www.drupal.org/sa-core-2022-005
http://www.nessus.org/u?526d7751
https://github.com/ckeditor/ckeditor4
http://www.nessus.org/u?773fe8cd
http://www.nessus.org/u?742ef187
http://www.nessus.org/u?63de4ace
https://www.drupal.org/project/drupal/releases/9.2.15
https://www.drupal.org/project/drupal/releases/9.3.8
https://www.drupal.org/psa-2011-002
Severity: Medium
ID: 158982
File Name: drupal_9_3_8.nasl
Version: 1.8
Type: remote
Family: CGI abuses
Published: 3/16/2022
Updated: 11/6/2023
Configuration: Enable paranoid mode, Enable thorough checks
Supported Sensors: Nessus
Risk Factor: Low
Score: 3.6
Risk Factor: Low
Base Score: 3.5
Temporal Score: 2.9
Vector: CVSS2#AV:N/AC:M/Au:S/C:N/I:P/A:N
CVSS Score Source: CVE-2022-24728
Risk Factor: Medium
Base Score: 5.4
Temporal Score: 5
Vector: CVSS:3.0/AV:N/AC:L/PR:L/UI:R/S:C/C:L/I:L/A:N
Temporal Vector: CVSS:3.0/E:F/RL:O/RC:C
CPE: cpe:/a:drupal:drupal
Required KB Items: Settings/ParanoidReport, installed_sw/Drupal
Exploit Available: true
Exploit Ease: Exploits are available
Patch Publication Date: 3/16/2022
Vulnerability Publication Date: 3/16/2022
CVE: CVE-2022-24728, CVE-2022-24729
IAVA: 2022-A-0123-S