PT-2006-6192 · Drupal · Drupal

Frederic Marand

·

Published

2006-10-24

·

Updated

2018-10-17

·

CVE-2006-5477

CVSS v2.0

2.6

Low

VectorAV:N/AC:H/Au:N/C:P/I:N/A:N
Name of the Vulnerable Software and Affected Versions Drupal versions 4.6.x before 4.6.10 Drupal versions 4.7.x before 4.7.4
Description The issue allows form submissions to be redirected, enabling remote attackers to obtain arbitrary form information via a crafted URL.
Recommendations For versions 4.6.x, update to version 4.6.10 or later. For versions 4.7.x, update to version 4.7.4 or later.

Fix

Found an issue in the description? Have something to add? Feel free to write us 👾

Related Identifiers

CVE-2006-5477

Affected Products

Drupal