Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

debian логотип

CVE-2015-2749

Опубликовано: 13 сент. 2017
Источник: debian
EPSS Низкий

Описание

Open redirect vulnerability in Drupal 6.x before 6.35 and 7.x before 7.35 allows remote attackers to redirect users to arbitrary web sites and conduct phishing attacks via a URL in the destination parameter.

Пакеты

ПакетСтатусВерсия исправленияРелизТип
drupal7fixed7.32-1+deb8u2package
drupal6removedpackage
drupal6end-of-lifesqueezepackage

Примечания

  • https://www.drupal.org/SA-CORE-2015-001

  • https://www.openwall.com/lists/oss-security/2015/03/19/5

EPSS

Процентиль: 67%
0.00561
Низкий

Связанные уязвимости

CVSS3: 6.1
ubuntu
почти 8 лет назад

Open redirect vulnerability in Drupal 6.x before 6.35 and 7.x before 7.35 allows remote attackers to redirect users to arbitrary web sites and conduct phishing attacks via a URL in the destination parameter.

CVSS3: 6.1
nvd
почти 8 лет назад

Open redirect vulnerability in Drupal 6.x before 6.35 and 7.x before 7.35 allows remote attackers to redirect users to arbitrary web sites and conduct phishing attacks via a URL in the destination parameter.

CVSS3: 6.1
github
около 3 лет назад

Open redirect vulnerability in Drupal 6.x before 6.35 and 7.x before 7.35 allows remote attackers to redirect users to arbitrary web sites and conduct phishing attacks via a URL in the destination parameter.

EPSS

Процентиль: 67%
0.00561
Низкий