ZeroHour

CVE-2016-9451

CVSS 3.0
6.8 medium
EPSS
2%p73
Published
()
Modified
Description

Confirmation forms in Drupal 7.x before 7.52 make it easier for remote authenticated users to conduct open redirect attacks via unspecified vectors.

Vendors
drupal
Products
drupal
Ecosystems
Drupal
Weakness
CWE-601
Vector
CVSS:3.0/AV:N/AC:L/PR:L/UI:R/S:C/C:N/I:H/A:N

In the news

No ingested article mentions this CVE yet.