CVE-2012-2728
27.06.2012, 00:55
Multiple cross-site request forgery (CSRF) vulnerabilities in the Node Hierarchy module 6.x-1.x before 6.x-1.5 for Drupal allow remote attackers to hijack the authentication of administrators for requests that change a node hierarchy position via an (1) up or (2) down action.
Vendor | Product | Version |
---|---|---|
ronan_dowling | node_hierarchy | 6.x-1.0:x |
ronan_dowling | node_hierarchy | 6.x-1.1:x |
ronan_dowling | node_hierarchy | 6.x-1.2:x |
ronan_dowling | node_hierarchy | 6.x-1.3:x |
ronan_dowling | node_hierarchy | 6.x-1.4:x |
ronan_dowling | node_hierarchy | 6.x-1.x:x |
𝑥
= Vulnerable software versions
Common Weakness Enumeration
References