CVE-2009-1037: Medium severity Drupal Print vulnerability
Unspecified vulnerability in the Send by e-mail module in the "Printer, e-mail and PDF versions" module 5.x before 5.x-4.4 and 6.x before 6.x-1.4, a module for Drupal, allows remote attackers to send unlimited spam messages via unknown vectors related to the flood control API.
Affected Software
Remediation
Recommended actions to resolve this vulnerability, in priority order.
- Upgrade
Upgrade
Printer, e-mail and PDF versions (Send by e-mail module)to a version that resolves this vulnerability.Fixed in 5.x-4.4 - Upgrade
Upgrade
Printer, e-mail and PDF versions (Send by e-mail module)to a version that resolves this vulnerability.Fixed in 6.x-1.4
Event History
Frequently Asked Questions
What is the severity of CVE-2009-1037?
CVE-2009-1037 is considered a moderate severity vulnerability as it allows remote attackers to send unlimited spam messages.
How do I fix CVE-2009-1037?
To fix CVE-2009-1037, you should update the Printer, e-mail and PDF versions module to version 5.x-4.4 or 6.x-1.4 or later.
What versions of the Drupal Print module are affected by CVE-2009-1037?
CVE-2009-1037 affects the Drupal Print module versions 5.x before 5.x-4.4 and 6.x before 6.x-1.4.
What are the potential impacts of CVE-2009-1037?
The potential impacts of CVE-2009-1037 include the ability for attackers to exploit the flood control API, allowing unsolicited bulk emailing.
Is there a patch available for CVE-2009-1037?
Yes, a patch is available through the module updates that address the vulnerability in CVE-2009-1037.