Описание
Confirmation forms in Drupal 7.x before 7.52 make it easier for remote authenticated users to conduct open redirect attacks via unspecified vectors.
Пакеты
Пакет | Статус | Версия исправления | Релиз | Тип |
---|---|---|---|---|
drupal7 | fixed | 7.52-1 | package |
Примечания
https://www.drupal.org/SA-CORE-2016-005
https://www.openwall.com/lists/oss-security/2016/11/18/8
EPSS
Процентиль: 43%
0.00202
Низкий
Связанные уязвимости
CVSS3: 6.8
ubuntu
больше 8 лет назад
Confirmation forms in Drupal 7.x before 7.52 make it easier for remote authenticated users to conduct open redirect attacks via unspecified vectors.
CVSS3: 6.8
nvd
больше 8 лет назад
Confirmation forms in Drupal 7.x before 7.52 make it easier for remote authenticated users to conduct open redirect attacks via unspecified vectors.
EPSS
Процентиль: 43%
0.00202
Низкий