5
CVSSv2

CVE-2015-5511

Published: 18/08/2015 Updated: 28/11/2016
CVSS v2 Base Score: 5 | Impact Score: 2.9 | Exploitability Score: 10
VMScore: 445
Vector: AV:N/AC:L/Au:N/C:N/I:P/A:N

Vulnerability Summary

The HybridAuth Social Login module 7.x-2.x prior to 7.x-2.13 for Drupal allows remote malicious users to bypass the user registration by administrator only configuration and create an account via a social login.

Vulnerable Product Search on Vulmon Subscribe to Product

hybridauth social login project hybridauth social login 7.x-2.0

hybridauth social login project hybridauth social login 7.x-2.7

hybridauth social login project hybridauth social login 7.x-2.8

hybridauth social login project hybridauth social login 7.x-2.5

hybridauth social login project hybridauth social login 7.x-2.6

hybridauth social login project hybridauth social login 7.x-2.1

hybridauth social login project hybridauth social login 7.x-2.2

hybridauth social login project hybridauth social login 7.x-2.9

hybridauth social login project hybridauth social login 7.x-2.10

hybridauth social login project hybridauth social login 7.x-2.11

hybridauth social login project hybridauth social login 7.x-2.3

hybridauth social login project hybridauth social login 7.x-2.4

hybridauth social login project hybridauth social login 7.x-2.12