Description
Unknown vulnerability in the privilege system in Drupal 4.4.0 through 4.6.0, when public registration is enabled, allows remote attackers to gain privileges, due to an "input check" that "is not implemented properly."
Remediation
References
Related Vulnerabilities
WordPress Plugin Are You a Human-The Fun Spam Blocker Cross-Site Scripting (1.4.32)
WordPress Plugin WP Academic People List Cross-Site Scripting (0.4.1)
WordPress Plugin College publisher Import Arbitrary File Upload (0.1)
WordPress Plugin Ticketrilla:Client PHP Object Injection (1.0.1)
WordPress Plugin Duplicator-WordPress Migration Cross-Site Scripting (0.4.4)