CVE-2006-5477
Publication date 24 October 2006
Last updated 17 July 2025
Ubuntu priority
Description
Drupal 4.6.x before 4.6.10 and 4.7.x before 4.7.4 allows form submissions to be redirected, which allows remote attackers to obtain arbitrary form information via a crafted URL.