CVE-2008-0272
Publication date 15 January 2008
Last updated 24 July 2024
Ubuntu priority
Description
Cross-site request forgery (CSRF) vulnerability in the aggregator module in Drupal 4.7.x before 4.7.11 and 5.x before 5.6 allows remote attackers to delete items from a feed as privileged users.
Status
| Package | Ubuntu Release | Status |
|---|---|---|
| drupal5 | ||
| drupal | ||
Patch details
| Package | Patch details |
|---|---|
| drupal5 |
|
| drupal |
|