|
|
| |
| Secure Password Hashes for Drupal is prone to a security-bypass vulnerability. |
| |
Credit:
The original article can be found at: http://www.securityfocus.com/bid/48502
The information has been provided by PWolanin .
|
| |
Vulnerable Systems:
*Drupal Secure Password Hashes 6.X-1.0 and prior
An attacker can exploit this issue to reset the users password. Successful exploits will result in other attacks.
Vendor Status:
Currently we are not aware of any vendor-supplied patches
Disclosure Timeline:
Initial Release: Jun 29 2011
|
|
blog comments powered by
|