Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

ubuntu логотип

CVE-2008-0272

Опубликовано: 15 янв. 2008
Источник: ubuntu
Приоритет: low
EPSS Низкий
CVSS2: 4.3

Описание

Cross-site request forgery (CSRF) vulnerability in the aggregator module in Drupal 4.7.x before 4.7.11 and 5.x before 5.6 allows remote attackers to delete items from a feed as privileged users.

РелизСтатусПримечание
dapper

ignored

end of life
devel

DNE

edgy

ignored

end of life, was needed
feisty

released

5.1-0ubuntu2.3
gutsy

DNE

hardy

DNE

intrepid

DNE

jaunty

DNE

karmic

DNE

upstream

released

4.7.11

Показывать по

РелизСтатусПримечание
dapper

DNE

devel

DNE

edgy

DNE

feisty

DNE

gutsy

released

5.2-2ubuntu2.2
hardy

not-affected

5.6-1ubuntu1
intrepid

not-affected

5.6-1ubuntu1
jaunty

not-affected

5.6-1ubuntu1
karmic

not-affected

5.6-1ubuntu1
upstream

released

5.6

Показывать по

Ссылки на источники

EPSS

Процентиль: 52%
0.00295
Низкий

4.3 Medium

CVSS2

Связанные уязвимости

nvd
больше 17 лет назад

Cross-site request forgery (CSRF) vulnerability in the aggregator module in Drupal 4.7.x before 4.7.11 and 5.x before 5.6 allows remote attackers to delete items from a feed as privileged users.

debian
больше 17 лет назад

Cross-site request forgery (CSRF) vulnerability in the aggregator modu ...

github
около 3 лет назад

Cross-site request forgery (CSRF) vulnerability in the aggregator module in Drupal 4.7.x before 4.7.11 and 5.x before 5.6 allows remote attackers to delete items from a feed as privileged users.

EPSS

Процентиль: 52%
0.00295
Низкий

4.3 Medium

CVSS2

Уязвимость CVE-2008-0272