CVE-2014-9502
01.02.2018, 17:29
Multiple cross-site request forgery (CSRF) vulnerabilities in unspecified sub modules in the Open Atrium module 7.x-2.x before 7.x-2.26 for Drupal allow remote attackers to hijack the authentication of unknown victims via vectors related to menu callbacks.
Vendor | Product | Version |
---|---|---|
open_atrium_project | open_atrium | 7.x-2.0 ≤ 𝑥 < 7.x-2.26 |
open_atrium_project | open_atrium | 7.x-2.0:x |
open_atrium_project | open_atrium | 7.x-2.0:x |
open_atrium_project | open_atrium | 7.x-2.0:x |
open_atrium_project | open_atrium | 7.x-2.0:x |
open_atrium_project | open_atrium | 7.x-2.0:x |
open_atrium_project | open_atrium | 7.x-2.0:x |
open_atrium_project | open_atrium | 7.x-2.0:x |
open_atrium_project | open_atrium | 7.x-2.0:x |
open_atrium_project | open_atrium | 7.x-2.0:x |
open_atrium_project | open_atrium | 7.x-2.0:x |
𝑥
= Vulnerable software versions
Common Weakness Enumeration
References