CVE Database
/

CVE-2010-2473

Back to search

CVE-2010-2473

Published: Nov 7, 2019

Modified: Aug 7, 2024

PUBLISHED

Description

Drupal 6.x before 6.16 and 5.x before version 5.22 does not properly block users under certain circumstances. A user with an open session that was blocked could maintain their session on the Drupal site despite being blocked.

VendorProductVersions

drupal6

drupal6

affected
6.x before version 6.16
affected
5.x before version 5.22

Security Training

Train your team to recognize and prevent security threats with our comprehensive security awareness program.

Start Training

Vulnerability Scanning

Discover vulnerabilities in your applications and infrastructure before attackers do.

Scan Now