The OpenID module in Drupal 6.x before 6.18, and the OpenID module 5.x before 5.x-1.4 for Drupal, violates the OpenID 2.0 protocol by not ensuring that fields are signed, which allows remote attackers to bypass authentication by leveraging an assertion from an OpenID provider.
References
Link | Resource |
---|---|
http://www.securityfocus.com/bid/42388 | |
http://www.debian.org/security/2010/dsa-2113 | |
http://drupal.org/node/880480 | Patch Vendor Advisory |
http://marc.info/?l=oss-security&m=128440896914512&w=2 | |
http://drupal.org/node/880476 | Patch Vendor Advisory |
http://marc.info/?l=oss-security&m=128418560705305&w=2 |
Configurations
Configuration 1 (hide)
|
Configuration 2 (hide)
|
Information
Published : 2010-09-29 10:00
Updated : 2010-09-29 21:00
NVD link : CVE-2010-3686
Mitre link : CVE-2010-3686
JSON object : View
CWE
CWE-287
Improper Authentication
Products Affected
drupal
- drupal
peter_wolanin
- openid