First published: Thu Mar 08 2007(Updated: )
Unspecified vulnerability in the Nodefamily module for Drupal 5.x before 5.x-1.0 allows remote authenticated users to access and modify other users' profiles via unspecified URL parameters.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Drupal Nodefamily | =5.1_1.0 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2007-1360 is considered a high severity vulnerability due to its potential for unauthorized access and modification of user profiles.
To fix CVE-2007-1360, upgrade to the latest version of the Nodefamily module for Drupal 5.x, specifically version 5.x-1.0 or later.
CVE-2007-1360 affects remote authenticated users of Drupal 5.x using the Nodefamily module prior to version 5.x-1.0.
CVE-2007-1360 is an access control vulnerability that allows users to modify other users' profiles.
Details about a specific exploit for CVE-2007-1360 are not publicly available, but the vulnerability itself allows for unauthorized profile access.