Drupal Prior To 4.7.8 and 5.3 Multiple Remote Vulnerabilities
BID:26119
Info
Drupal Prior To 4.7.8 and 5.3 Multiple Remote Vulnerabilities
| Bugtraq ID: | 26119 |
| Class: | Unknown |
| CVE: |
CVE-2007-5593 CVE-2007-5594 CVE-2007-5595 CVE-2007-5596 CVE-2007-5597 |
| Remote: | Yes |
| Local: | No |
| Published: | Oct 18 2007 12:00AM |
| Updated: | Nov 15 2007 12:36AM |
| Credit: | The Drupal security team, Stefan Esser, Mayflower GmbH., Mark Fallon Wolfgang Ziegler are credited with the discovery of this vulnerability. |
| Vulnerable: |
vbDrupal vbDrupal 4.7.6 vbDrupal vbDrupal 4.7.5 Redhat Fedora 7 Drupal Drupal 4.7.7 Drupal Drupal 4.7.6 Drupal Drupal 4.7.5 Drupal Drupal 4.7.4 Drupal Drupal 4.7.4 Drupal Drupal 4.7.3 Drupal Drupal 4.7.3 Drupal Drupal 4.7.1 Drupal Drupal 4.7 Drupal Drupal 5.2 Drupal Drupal 5.1 Drupal Drupal 5.0 |
| Not Vulnerable: |
vbDrupal vbDrupal 5.3 Drupal Drupal 4.7.8 Drupal Drupal 5.3 |
Discussion
Drupal Prior To 4.7.8 and 5.3 Multiple Remote Vulnerabilities
Drupal is prone to multiple remote vulnerabilities:
- A cross-site request-forgery vulnerability.
- An HTTP response-splitting vulnerability.
- An HTML-injection vulnerability.
- A vulnerability that may allow an attacker to mail unpublished comments.
- An arbitrary-code-execution vulnerability.
An attacker may exploit these vulnerabilities to:
- Influence or misrepresent how web content is served, cached, or interpreted.
- Execute arbitrary code within the context of the webserver process.
- Steal cookie-based authentication credentials, allowing the attacker to launch other attacks.
Drupal is prone to multiple remote vulnerabilities:
- A cross-site request-forgery vulnerability.
- An HTTP response-splitting vulnerability.
- An HTML-injection vulnerability.
- A vulnerability that may allow an attacker to mail unpublished comments.
- An arbitrary-code-execution vulnerability.
An attacker may exploit these vulnerabilities to:
- Influence or misrepresent how web content is served, cached, or interpreted.
- Execute arbitrary code within the context of the webserver process.
- Steal cookie-based authentication credentials, allowing the attacker to launch other attacks.
Exploit / POC
Drupal Prior To 4.7.8 and 5.3 Multiple Remote Vulnerabilities
Attackers can exploit these issues via a browser.
Attackers can exploit these issues via a browser.
Solution / Fix
Drupal Prior To 4.7.8 and 5.3 Multiple Remote Vulnerabilities
Solution:
The vendor has released updated versions to address these issues. Please see the references for more information.
Drupal Drupal 5.1
Drupal Drupal 5.0
Drupal Drupal 5.2
Drupal Drupal 4.7
Drupal Drupal 4.7.1
Drupal Drupal 4.7.3
Drupal Drupal 4.7.3
Drupal Drupal 4.7.4
Drupal Drupal 4.7.4
Drupal Drupal 4.7.5
Drupal Drupal 4.7.6
Drupal Drupal 4.7.7
Solution:
The vendor has released updated versions to address these issues. Please see the references for more information.
Drupal Drupal 5.1
-
Drupal drupal-5.3.tar.gz
http://ftp.drupal.org/files/projects/drupal-5.3.tar.gz
Drupal Drupal 5.0
-
Drupal drupal-5.3.tar.gz
http://ftp.drupal.org/files/projects/drupal-5.3.tar.gz
Drupal Drupal 5.2
-
Drupal drupal-5.3.tar.gz
http://ftp.drupal.org/files/projects/drupal-5.3.tar.gz
Drupal Drupal 4.7
-
Drupal drupal-4.7.8.tar.gz
http://ftp.drupal.org/files/projects/drupal-4.7.8.tar.gz
Drupal Drupal 4.7.1
-
Drupal drupal-4.7.8.tar.gz
http://ftp.drupal.org/files/projects/drupal-4.7.8.tar.gz
Drupal Drupal 4.7.3
-
Drupal drupal-4.7.8.tar.gz
http://ftp.drupal.org/files/projects/drupal-4.7.8.tar.gz
Drupal Drupal 4.7.3
-
Drupal drupal-4.7.8.tar.gz
http://ftp.drupal.org/files/projects/drupal-4.7.8.tar.gz
Drupal Drupal 4.7.4
-
Drupal drupal-4.7.8.tar.gz
http://ftp.drupal.org/files/projects/drupal-4.7.8.tar.gz
Drupal Drupal 4.7.4
-
Drupal drupal-4.7.8.tar.gz
http://ftp.drupal.org/files/projects/drupal-4.7.8.tar.gz
Drupal Drupal 4.7.5
-
Drupal drupal-4.7.8.tar.gz
http://ftp.drupal.org/files/projects/drupal-4.7.8.tar.gz
Drupal Drupal 4.7.6
-
Drupal drupal-4.7.8.tar.gz
http://ftp.drupal.org/files/projects/drupal-4.7.8.tar.gz
Drupal Drupal 4.7.7
-
Drupal drupal-4.7.8.tar.gz
http://ftp.drupal.org/files/projects/drupal-4.7.8.tar.gz
References
Drupal Prior To 4.7.8 and 5.3 Multiple Remote Vulnerabilities
References:
References:
- vbDrupal Homepage (vbDrupal)
- Vendor Homepage (Drupal)
- Drupal Security Advisory SA-2007-024 (Drupal)
- Drupal Security Advisory SA-2007-025 (Drupal)
- Drupal Security Advisory SA-2007-026 (Drupal)
- Drupal Security Advisory SA-2007-029 (Drupal)
- Drupal Security Advisory SA-2007-030 (Drupal)