First published: Wed Oct 22 2014(Updated: )
Cross-site request forgery (CSRF) vulnerability in the MRBS module for Drupal allows remote attackers to hijack the authentication of unspecified victims via unknown vectors.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Drupal Mrbs Module |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2013-7407 has been rated as a medium severity vulnerability due to its potential for exploitation through CSRF.
To fix CVE-2013-7407, ensure the MRBS module for Drupal is updated to the latest version available.
Remote attackers can perform cross-site request forgery attacks that hijack the authentication of users.
CVE-2013-7407 affects all versions of the MRBS module for Drupal that are not patched.
Disabling the MRBS module can serve as a temporary workaround until the module is updated.