Drupal Core 'drupal_valid_token()' Function Access Bypass Vulnerability

Drupal is prone to an access-bypass vulnerability.

Successfully exploiting this issue may allow an attacker to bypass certain security restrictions and perform unauthorized actions.

Drupal core 6.x versions prior to 6.29 and 7.x versions prior to 7.24 are vulnerable.


 

Privacy Statement
Copyright 2010, SecurityFocus