CVE-2015-7233

Cross-site request forgery (CSRF) vulnerability in the OSF module 7.x-3.x before 7.x-3.1 for Drupal, when the OSF Import module is enabled, allows remote attackers to hijack the authentication of administrators for requests that create new OSF datasets via unspecified vectors.
References
Advertisement

NeevaHost hosting service

Configurations

Configuration 1 (hide)

OR cpe:2.3:a:structured_dynamics:open_semantic_framework:7.x-3.0:*:*:*:*:drupal:*:*
cpe:2.3:a:structured_dynamics:open_semantic_framework:7.x-3.x:dev:*:*:*:drupal:*:*

Information

Published : 2015-09-17 09:59

Updated : 2015-09-18 11:38


NVD link : CVE-2015-7233

Mitre link : CVE-2015-7233


JSON object : View

CWE
CWE-352

Cross-Site Request Forgery (CSRF)

Advertisement

dedicated server usa

Products Affected

structured_dynamics

  • open_semantic_framework