CVE Database
/

CVE-2012-5542

Back to search

CVE-2012-5542

Published: Dec 3, 2012

Modified: Aug 6, 2024

PUBLISHED

Description

Cross-site request forgery (CSRF) vulnerability in the Commerce Extra Panes module 7.x-1.x before 7.x-1.1 in Drupal allows remote attackers to hijack the authentication of administrators for requests that enable or disable a Commerce extra panes pane via unspecified vectors related to "the link to reorder items."

VendorProductVersions

n/a

n/a

affected
n/a

References

50802
third-party-advisory
x_refsource_SECUNIA
55776
vdb-entry
x_refsource_BID
85892
vdb-entry
x_refsource_OSVDB

Security Training

Train your team to recognize and prevent security threats with our comprehensive security awareness program.

Start Training

Vulnerability Scanning

Discover vulnerabilities in your applications and infrastructure before attackers do.

Scan Now