Open redirect vulnerability in the Form API in Drupal 7.x prior to 7.13 allows remote malicious users to redirect users to arbitrary web sites and conduct phishing attacks via crafted parameters in a destination URL.
Vulnerable Product | Search on Vulmon | Subscribe to Product |
---|---|---|
drupal drupal 7.0 |
||
drupal drupal 7.8 |
||
drupal drupal 7.7 |
||
drupal drupal 7.6 |
||
drupal drupal 7.5 |
||
drupal drupal 7.12 |
||
drupal drupal 7.11 |
||
drupal drupal 7.4 |
||
drupal drupal 7.3 |
||
drupal drupal 7.10 |
||
drupal drupal 7.9 |
||
drupal drupal 7.2 |
||
drupal drupal 7.1 |
||
drupal drupal 7.x-dev |