Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

ubuntu логотип

CVE-2012-0826

Опубликовано: 28 окт. 2013
Источник: ubuntu
Приоритет: medium
CVSS2: 6.8

Описание

Cross-site request forgery (CSRF) vulnerability in the Aggregator module in Drupal 6.x before 6.23 and 7.x before 7.11 allows remote attackers to hijack the authentication of unspecified victims for requests that update feeds and possibly cause a denial of service (loss of updates due to rate limit) via unspecified vectors.

РелизСтатусПримечание
devel

DNE

esm-infra-legacy/trusty

DNE

hardy

DNE

lucid

ignored

end of life
maverick

ignored

end of life
natty

ignored

end of life
oneiric

ignored

end of life
precise

ignored

end of life
precise/esm

DNE

precise was needed
quantal

not-affected

6.26-1.1ubuntu1

Показывать по

РелизСтатусПримечание
devel

not-affected

7.14-1
esm-apps/xenial

not-affected

7.14-1
esm-infra-legacy/trusty

not-affected

7.14-1
hardy

DNE

lucid

DNE

maverick

DNE

natty

DNE

oneiric

DNE

precise

not-affected

7.12-1
precise/esm

DNE

precise was not-affected [7.12-1]

Показывать по

6.8 Medium

CVSS2

Связанные уязвимости

nvd
около 12 лет назад

Cross-site request forgery (CSRF) vulnerability in the Aggregator module in Drupal 6.x before 6.23 and 7.x before 7.11 allows remote attackers to hijack the authentication of unspecified victims for requests that update feeds and possibly cause a denial of service (loss of updates due to rate limit) via unspecified vectors.

debian
около 12 лет назад

Cross-site request forgery (CSRF) vulnerability in the Aggregator modu ...

github
больше 3 лет назад

Cross-site request forgery (CSRF) vulnerability in the Aggregator module in Drupal 6.x before 6.23 and 7.x before 7.11 allows remote attackers to hijack the authentication of unspecified victims for requests that update feeds and possibly cause a denial of service (loss of updates due to rate limit) via unspecified vectors.

6.8 Medium

CVSS2

Уязвимость CVE-2012-0826