CVE-2015-7233

Cross-site request forgery (CSRF) vulnerability in the OSF module 7.x-3.x before 7.x-3.1 for Drupal, when the OSF Import module is enabled, allows remote attackers to hijack the authentication of administrators for requests that create new OSF datasets via unspecified vectors.
References
Configurations

Configuration 1 (hide)

OR cpe:2.3:a:structured_dynamics:open_semantic_framework:7.x-3.0:*:*:*:*:drupal:*:*
cpe:2.3:a:structured_dynamics:open_semantic_framework:7.x-3.x:dev:*:*:*:drupal:*:*

History

No history.

Information

Published : 2015-09-17 16:59

Updated : 2024-02-04 18:53


NVD link : CVE-2015-7233

Mitre link : CVE-2015-7233

CVE.ORG link : CVE-2015-7233


JSON object : View

Products Affected

structured_dynamics

  • open_semantic_framework
CWE
CWE-352

Cross-Site Request Forgery (CSRF)