Home
Trends
Vulnerabilities
News
Researchers
Why dbugs?

Eirik Hodne

#18076of 53,779
15Total CVSS
Vulnerabilities · 2
High
2
PT-2006-7132
7.5
2006-12-14
Drupal · Drupal Chatroom Module · CVE-2006-6528
**Name of the Vulnerable Software and Affected Versions** Drupal Chatroom Module versions prior to 4.7.x-1.0 **Description** The issue allows remote attackers to hijack sessions and gain privileges by broadcasting Chatroom visitors' session IDs to all participants. **Recommendations** For versions prior to 4.7.x-1.0, update to version 4.7.x-1.0 or later to resolve the issue.
PT-2006-7133
7.5
2006-12-14
Drupal · Drupal Chatroom Module · CVE-2006-6529
**Name of the Vulnerable Software and Affected Versions** Drupal Chatroom Module versions prior to 4.7.x-1.0 **Description** The issue allows remote attackers to obtain sensitive information by reading the chatroom's last messages overview, where private messages are improperly displayed. **Recommendations** For versions prior to 4.7.x-1.0, update to version 4.7.x-1.0 or later to resolve the issue.