CVE-2007-0658: Medium severity Drupal Drupal vulnerability
Published Feb 1, 2007
·Updated
The (1) Textimage 4.7.x before 4.7-1.2 and 5.x before 5.x-1.1 module for Drupal and the (2) Captcha 4.7.x before 4.7-1.2 and 5.x before 5.x-1.1 module for Drupal allow remote attackers to bypass the CAPTCHA test via an empty captcha element in $SESSION.
Affected Software
12 affected components
Drupal Drupal=4.7.2
Drupal Textimage=4.7
Drupal Drupal=4.7.5
Drupal Drupal=4.7.3
Drupal Drupal=5.0
Drupal Drupal=4.7_rev1.15
Drupal Drupal=4.7
Drupal Drupal=4.7.6
Drupal Drupal=5.1
Drupal Drupal=4.7.4
Drupal Drupal=4.7.1
Drupal Textimage=5.0
Remediation
Patch Available
Patch Available
Patch Available
Patch Available
Event History
Feb 1, 2007
CVE Published
10:28 PM
Feb 2, 2007
CVE Published
via MITRE·03:00 AM
Data Sourced
via MITRE·03:00 AM
Description
Frequently Asked Questions
1
What is the severity of CVE-2007-0658?
CVE-2007-0658 is considered a moderate severity vulnerability due to its potential for bypassing CAPTCHA.
2
How do I fix CVE-2007-0658?
To fix CVE-2007-0658, update the affected Textimage and Captcha modules to the latest versions.
3
Who is affected by CVE-2007-0658?
CVE-2007-0658 affects Drupal versions 4.7.x before 4.7-1.2 and 5.x before 5.x-1.1.
4
What is the primary impact of CVE-2007-0658?
The primary impact of CVE-2007-0658 is that it allows remote attackers to bypass the CAPTCHA test.
5
Is CVE-2007-0658 a remote code execution vulnerability?
No, CVE-2007-0658 is not a remote code execution vulnerability; it is related to bypassing CAPTCHA security.