Vulnerable Systems:
* Drupal 5.x before version 5.13
* Drupal 6.x before version 6.7
The update system is vulnerable to Cross site request forgeries. Malicious users may cause the superuser (user 1) to execute old updates that may damage the database.
Vendor Status:
Drupal issued an update for this vulnerability