7.5
CVSSv2

CVE-2006-6528

Published: 14/12/2006 Updated: 08/03/2011
CVSS v2 Base Score: 7.5 | Impact Score: 6.4 | Exploitability Score: 10
VMScore: 668
Vector: AV:N/AC:L/Au:N/C:P/I:P/A:P

Vulnerability Summary

The Chatroom Module prior to 4.7.x.-1.0 for Drupal broadcasts Chatroom visitors' session IDs to all participants, which allows remote malicious users to hijack sessions and gain privileges.

Vulnerable Product Search on Vulmon Subscribe to Product

drupal chatroom module