First published: Tue Mar 19 2013(Updated: )
Cross-site request forgery (CSRF) vulnerability in the Mark Complete module 7.x-1.x before 7.x-1.1 for Drupal allows remote attackers to hijack the authentication of unspecified victims via unknown vectors.
Credit: secalert@redhat.com
Affected Software | Affected Version | How to fix |
---|---|---|
Leighton Whiting Mark Complete | ||
Drupal Drupal |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2013-0207 is classified as a medium severity vulnerability due to its potential for cross-site request forgery outcomes.
To fix CVE-2013-0207, update the Mark Complete module to version 7.x-1.1 or later.
CVE-2013-0207 is a cross-site request forgery (CSRF) vulnerability.
Users of the Mark Complete module version 7.x-1.x prior to 7.x-1.1 on Drupal are affected by CVE-2013-0207.
Attackers exploiting CVE-2013-0207 can hijack the authentication of users through CSRF attacks.