CVE-2007-2160: CSRF
Multiple cross-site request forgery (CSRF) vulnerabilities in the Database Administration (dba) module 4.6.x-, and before 4.7.x-1.2 in the 4.7.x-1. series, for Drupal allow remote attackers to perform unauthorized actions as an arbitrary user, a related issue to CVE-2006-5476.
Affected Software
Remediation
Patch Available
Patch Available
Event History
Frequently Asked Questions
What is the severity of CVE-2007-2160?
CVE-2007-2160 is a high severity vulnerability due to its potential for unauthorized actions by remote attackers.
How do I fix CVE-2007-2160?
To fix CVE-2007-2160, update the Database Administration module to version 4.7.x-1.2 or later.
What types of attacks are possible with CVE-2007-2160?
CVE-2007-2160 allows attackers to perform unauthorized actions via cross-site request forgery (CSRF).
Which versions of Drupal are affected by CVE-2007-2160?
CVE-2007-2160 affects Drupal Database Administration module versions 4.6.x-* and 4.7.x-1.* before 4.7.x-1.2.
Who is impacted by CVE-2007-2160?
Users of the affected versions of the Database Administration module in Drupal could be impacted as their accounts may be exploited.