CVE-2015-3367

Multiple cross-site request forgery (CSRF) vulnerabilities in the Patterns module before 7.x-2.2 for Drupal allow remote attackers to hijack the authentication of administrators for requests that (1) restore, (2) publish, or (3) unpublish a pattern via unspecified vectors.
Advertisement

NeevaHost hosting service

Configurations

Configuration 1 (hide)

cpe:2.3:a:patterns:patterns:*:*:*:*:*:drupal:*:*

Information

Published : 2015-04-21 09:59

Updated : 2016-12-05 19:00


NVD link : CVE-2015-3367

Mitre link : CVE-2015-3367


JSON object : View

CWE
CWE-352

Cross-Site Request Forgery (CSRF)

Advertisement

dedicated server usa

Products Affected

patterns

  • patterns