Multiple cross-site request forgery (CSRF) vulnerabilities in Drupal 5.x before 5.2 allow remote attackers to (1) delete comments, (2) delete content revisions, and (3) disable menu items as privileged users, related to improper use of HTTP GET and the Forms API.
History

No history.

cve-icon MITRE

Status: PUBLISHED

Assigner: mitre

Published: 2007-07-30T17:00:00

Updated: 2024-08-07T14:37:06.115Z

Reserved: 2007-07-30T00:00:00

Link: CVE-2007-4063

cve-icon Vulnrichment

No data.

cve-icon NVD

Status : Modified

Published: 2007-07-30T17:30:00.000

Modified: 2017-07-29T01:32:42.363

Link: CVE-2007-4063

cve-icon Redhat

No data.