Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-26gr-c7rc-wwqj

Опубликовано: 14 мая 2022
Источник: github
Github: Не прошло ревью

Описание

Drupal 6.x before 6.34 and 7.x before 7.34 allows remote attackers to hijack sessions via a crafted request, as demonstrated by a crafted request to a server that supports both HTTP and HTTPS sessions.

Drupal 6.x before 6.34 and 7.x before 7.34 allows remote attackers to hijack sessions via a crafted request, as demonstrated by a crafted request to a server that supports both HTTP and HTTPS sessions.

EPSS

Процентиль: 82%
0.0191
Низкий

Связанные уязвимости

ubuntu
больше 10 лет назад

Drupal 6.x before 6.34 and 7.x before 7.34 allows remote attackers to hijack sessions via a crafted request, as demonstrated by a crafted request to a server that supports both HTTP and HTTPS sessions.

nvd
больше 10 лет назад

Drupal 6.x before 6.34 and 7.x before 7.34 allows remote attackers to hijack sessions via a crafted request, as demonstrated by a crafted request to a server that supports both HTTP and HTTPS sessions.

debian
больше 10 лет назад

Drupal 6.x before 6.34 and 7.x before 7.34 allows remote attackers to ...

EPSS

Процентиль: 82%
0.0191
Низкий