CVE-2012-0825
28.10.2013, 22:55
Drupal 6.x before 6.23 and 7.x before 7.11 does not verify that Attribute Exchange (AX) information is signed, which allows remote attackers to modify potentially sensitive AX information without detection via a man-in-the-middle (MITM) attack.Enginsight
Vendor | Product | Version |
---|---|---|
drupal | drupal | 6.0 |
drupal | drupal | 6.0:beta1 |
drupal | drupal | 6.0:beta2 |
drupal | drupal | 6.0:beta3 |
drupal | drupal | 6.0:beta4 |
drupal | drupal | 6.0:dev |
drupal | drupal | 6.0:rc1 |
drupal | drupal | 6.0:rc2 |
drupal | drupal | 6.0:rc3 |
drupal | drupal | 6.0:rc4 |
drupal | drupal | 6.1 |
drupal | drupal | 6.2 |
drupal | drupal | 6.10 |
drupal | drupal | 6.11 |
drupal | drupal | 6.12 |
drupal | drupal | 6.13 |
drupal | drupal | 6.14 |
drupal | drupal | 6.15 |
drupal | drupal | 6.16 |
drupal | drupal | 6.17 |
drupal | drupal | 6.18 |
drupal | drupal | 6.19 |
drupal | drupal | 6.20 |
drupal | drupal | 6.21 |
drupal | drupal | 6.22 |
drupal | drupal | 6.23 |
drupal | drupal | 7.0 |
drupal | drupal | 7.0:alpha1 |
drupal | drupal | 7.0:alpha2 |
drupal | drupal | 7.0:alpha3 |
drupal | drupal | 7.0:alpha4 |
drupal | drupal | 7.0:alpha5 |
drupal | drupal | 7.0:alpha6 |
drupal | drupal | 7.0:alpha7 |
drupal | drupal | 7.0:beta1 |
drupal | drupal | 7.0:beta2 |
drupal | drupal | 7.0:beta3 |
drupal | drupal | 7.0:dev |
drupal | drupal | 7.0:rc1 |
drupal | drupal | 7.0:rc2 |
drupal | drupal | 7.0:rc3 |
drupal | drupal | 7.0:rc4 |
drupal | drupal | 7.1 |
drupal | drupal | 7.2 |
drupal | drupal | 7.3 |
drupal | drupal | 7.4 |
drupal | drupal | 7.5 |
drupal | drupal | 7.6 |
drupal | drupal | 7.7 |
drupal | drupal | 7.8 |
drupal | drupal | 7.9 |
drupal | drupal | 7.10 |
drupal | drupal | 7.x:x |
drupal | drupal | 7.x-dev:x |
𝑥
= Vulnerable software versions

Ubuntu Releases
Ubuntu Product | |||||||||||||||||||||||||||||||||
---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|
drupal6 |
| ||||||||||||||||||||||||||||||||
drupal7 |
|
Common Weakness Enumeration