Weakness Name | Source | |
---|---|---|
Cross-Site Request Forgery (CSRF) The web application does not, or cannot, sufficiently verify whether a request was intentionally provided by the user who sent the request, which could have originated from an unauthorized actor. |
Metrics | Score | Severity | CVSS Vector | Source |
---|---|---|---|---|
V2 | 6.8 | AV:N/AC:M/Au:N/C:P/I:P/A:P | nvd@nist.gov |
Drupal>>Drupal >> Version *
Chad_phillips>>Userprotect >> Version 5.x-1.0
Chad_phillips>>Userprotect >> Version 5.x-1.1
Chad_phillips>>Userprotect >> Version 5.x-1.2
Chad_phillips>>Userprotect >> Version 5.x-1.3
Chad_phillips>>Userprotect >> Version 5.x-1.x-dev
Chad_phillips>>Userprotect >> Version 6.x-1.0
Chad_phillips>>Userprotect >> Version 6.x-1.1
Chad_phillips>>Userprotect >> Version 6.x-1.2
Chad_phillips>>Userprotect >> Version 6.x-1.x-dev