CVE-2008-0568: Critical severity drupal secure site module vulnerability
Unspecified vulnerability in the IP-authentication feature in the Secure Site 5.x-1.0 and 4.7.x-1.0 module for Drupal allows remote attackers to gain the privileges of a user who has authenticated from behind the same proxy server as the attacker.
Affected Software
Remediation
Patch Available
Event History
Frequently Asked Questions
What is the severity of CVE-2008-0568?
CVE-2008-0568 is considered a high severity vulnerability due to the potential for remote attackers to gain unauthorized privileges.
How do I fix CVE-2008-0568?
To fix CVE-2008-0568, upgrade to a patched version of the Secure Site module for Drupal that addresses this vulnerability.
What versions of Drupal are affected by CVE-2008-0568?
CVE-2008-0568 affects Drupal Secure Site module versions 4.7.x-1.0 and 5.x-1.0.
Can an attacker exploit CVE-2008-0568 remotely?
Yes, an attacker can exploit CVE-2008-0568 remotely if they are behind the same proxy server as an authenticated user.
What is the impact of CVE-2008-0568 on user accounts?
The impact of CVE-2008-0568 allows attackers to gain privileges of users who authenticated through the same proxy server, compromising user account security.