CVE-2012-2116
31.08.2012, 22:55
Cross-site request forgery (CSRF) vulnerability in the Commerce Reorder module before 7.x-1.1 for Drupal allows remote attackers to hijack the authentication of arbitrary users for requests that add items to the shopping cart.
Vendor | Product | Version |
---|---|---|
commerceguys | commerce_reorder | 𝑥 ≤ 7.x-1.0 |
commerceguys | commerce_reorder | 7.x-1.x:x |
𝑥
= Vulnerable software versions
Common Weakness Enumeration
References