Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
Session fixation vulnerability in Drupal 5.x before 5.9 and 6.x before 6.3, when contributed modules "terminate the current request during a login event," allows remote attackers to hijack web sessions via unknown vectors.
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
Drupal 授权问题漏洞
Vulnerability Description
Drupal是Drupal社区的一套使用PHP语言开发的开源内容管理系统。 Drupal5.9之前的5.x版本6.3之前的6.x版本中存在授权问题漏洞, 在投入模块 "在注册时终止当前请求" 的时候,远程攻击者通过未明向量挟持web会话。
CVSS Information
N/A
Vulnerability Type
N/A