Vulnerability   
Search   
    Search 324607 CVE descriptions
and 145615 test descriptions,
access 10,000+ cross references.
Tests   CVE   All  

CVE ID:CVE-2012-0825
Description:Drupal 6.x before 6.23 and 7.x before 7.11 does not verify that Attribute Exchange (AX) information is signed, which allows remote attackers to modify potentially sensitive AX information without detection via a man-in-the-middle (MITM) attack.
Test IDs: None available
Cross References: Common Vulnerability Exposure (CVE) ID: CVE-2012-0825
DSA-2776
http://www.debian.org/security/2013/dsa-2776
http://openid.net/2011/05/05/attribute-exchange-security-alert/
http://openid.net/2011/05/05/attribute-exchange-security-alert/
https://drupal.org/node/1425084
https://drupal.org/node/1425084




© 1998-2025 E-Soft Inc. All rights reserved.