← Volver a CVEs
CVE-2008-6169
N/ADescripcion
Cross-site request forgery (CSRF) vulnerability in the Localization client 5.x before 5.x-1.1 and 6.x before 6.x-1.6 and the Localization server 5.x before 5.x-1.0-alpha5 and 6.x before 6.x-alpha2, modules for Drupal, allows remote attackers to perform unauthorized actions as administrators via unspecified vectors related to the "local translation submission interface."
Detalles CVE
Puntuacion CVSS v3.1N/A
Publicado2/19/2009
Ultima modificacion4/23/2026
Fuentenvd
Avistamientos honeypot0
Productos afectados
drupal:localization_clientdrupal:localization_server
Debilidades (CWE)
CWE-352
Referencias
http://drupal.org/node/324862(cve@mitre.org)
http://secunia.com/advisories/32388(cve@mitre.org)
https://exchange.xforce.ibmcloud.com/vulnerabilities/46044(cve@mitre.org)
http://drupal.org/node/324862(af854a3a-2127-422b-91ae-364da2661108)
http://secunia.com/advisories/32388(af854a3a-2127-422b-91ae-364da2661108)
https://exchange.xforce.ibmcloud.com/vulnerabilities/46044(af854a3a-2127-422b-91ae-364da2661108)
Correlaciones IOC
Sin correlaciones registradas
This product uses data from the NVD API but is not endorsed or certified by the NVD.