CVE-2015-3388 Information
Feb 14, 2021
cve
Description
Cross-site request forgery (CSRF) vulnerability in the Commerce Balanced Payments module for Drupal allows remote attackers to hijack the authentication of arbitrary users for requests that delete the user’s configured bank accounts via unspecified vectors.
Reference
http://www.openwall.com/lists/oss-security/2015/02/13/12 http://www.securityfocus.com/bid/72615 https://www.drupal.org/node/2424435
Share on: