CVE-2015-4383 Information

Description

Cross-site request forgery (CSRF) vulnerability in the Decisions module for Drupal allows remote attackers to hijack the authentication of arbitrary users for requests that remove individual voters via unspecified vectors.

Reference

http://www.openwall.com/lists/oss-security/2015/04/25/6 http://www.securityfocus.com/bid/74344 https://www.drupal.org/node/2459349

Share on: