Vulnerability Database

289,599

Total vulnerabilities in the database

CVE-2007-6752

Cross-site request forgery (CSRF) vulnerability in Drupal 7.12 and earlier allows remote attackers to hijack the authentication of arbitrary users for requests that end a session via the user/logout URI. NOTE: the vendor disputes the significance of this issue, by considering the "security benefit against platform complexity and performance impact" and concluding that a change to the logout behavior is not planned because "for most sites it is not worth the trade-off.

  • Published: Mar 28, 2012
  • Updated: Nov 8, 2023
  • CVE: CVE-2007-6752
  • Severity: Medium
  • Exploit:

CVSS v2:

  • Severity: Medium
  • Score: 6.8
  • AV:N/AC:M/Au:N/C:P/I:P/A:P

CWEs:

Software From Fixed in
drupal / drupal 4.6.0 4.6.0.x
drupal / drupal 4.6 4.6.x
drupal / drupal 7.0-alpha5 7.0-alpha5.x
drupal / drupal 5.10 5.10.x
drupal / drupal 7.0-dev 7.0-dev.x
drupal / drupal 5.4 5.4.x
drupal / drupal 4.6.5 4.6.5.x
drupal / drupal 4.5.4 4.5.4.x
drupal / drupal 7.0-alpha7 7.0-alpha7.x
drupal / drupal 6.0-beta2 6.0-beta2.x
drupal / drupal 4.7.2 4.7.2.x
drupal / drupal 6.0-rc2 6.0-rc2.x
drupal / drupal 4.6.10 4.6.10.x
drupal / drupal 6.2 6.2.x
drupal / drupal 7.0-rc2 7.0-rc2.x
drupal / drupal 5.17 5.17.x
drupal / drupal 4.6.9 4.6.9.x
drupal / drupal 7.0-rc4 7.0-rc4.x
drupal / drupal 5.13 5.13.x
drupal / drupal 6.14 6.14.x
drupal / drupal 6.24 6.24.x
drupal / drupal 6.13 6.13.x
drupal / drupal 6.0-dev 6.0-dev.x
drupal / drupal 4.5.0 4.5.0.x
drupal / drupal 5.12 5.12.x
drupal / drupal 6.18 6.18.x
drupal / drupal 7.0-beta2 7.0-beta2.x
drupal / drupal 7.0-rc3 7.0-rc3.x
drupal / drupal 7.0-alpha1 7.0-alpha1.x
drupal / drupal 5.2 5.2.x
drupal / drupal 6.0-beta4 6.0-beta4.x
drupal / drupal 7.3 7.3.x
drupal / drupal 4.5.2 4.5.2.x
drupal / drupal 4.7.5 4.7.5.x
drupal / drupal 6.12 6.12.x
drupal / drupal 4.6.2 4.6.2.x
drupal / drupal 5.7 5.7.x
drupal / drupal 7.8 7.8.x
drupal / drupal 7.0-alpha4 7.0-alpha4.x
drupal / drupal 6.0-rc-2 6.0-rc-2.x
drupal / drupal 6.0-rc3 6.0-rc3.x
drupal / drupal 6.0-rc4 6.0-rc4.x
drupal / drupal 6.4 6.4.x
drupal / drupal 4.6.8 4.6.8.x
drupal / drupal 4.7.3 4.7.3.x
drupal / drupal 7.5 7.5.x
drupal / drupal 4.4 4.4.x
drupal / drupal 5.23 5.23.x
drupal / drupal 5.0-rc2 5.0-rc2.x
drupal / drupal 6.11 6.11.x
drupal / drupal 5.1_rev1.1 5.1_rev1.1.x
drupal / drupal 7.10 7.10.x
drupal / drupal 4.0 4.0.x
drupal / drupal 4.7.10 4.7.10.x
drupal / drupal 4.7.8 4.7.8.x
drupal / drupal 7.6 7.6.x
drupal / drupal 6.0-beta1 6.0-beta1.x
drupal / drupal 7.9 7.9.x
drupal / drupal 5.16 5.16.x
drupal / drupal 4.7_revision_1.2 4.7_revision_1.2.x
drupal / drupal 4.5.7 4.5.7.x
drupal / drupal 6.0-rc-1 6.0-rc-1.x
drupal / drupal 7.0-rc1 7.0-rc1.x
drupal / drupal 4.4.1 4.4.1.x
drupal / drupal 4.5.1 4.5.1.x
drupal / drupal 5.0 5.0.x
drupal / drupal 6.0-rc-3 6.0-rc-3.x
drupal / drupal 4.4.2 4.4.2.x
drupal / drupal 5.15 5.15.x
drupal / drupal 4.6.3 4.6.3.x
drupal / drupal 5.x-dev 5.x-dev.x
drupal / drupal 7.0-beta3 7.0-beta3.x
drupal / drupal 5.18 5.18.x
drupal / drupal 5.21 5.21.x
drupal / drupal 5.22 5.22.x
drupal / drupal 4.5.8 4.5.8.x
drupal / drupal 4.6.4 4.6.4.x
drupal / drupal 7.4 7.4.x
drupal / drupal 4.7.0 4.7.0.x
drupal / drupal 7.x-dev 7.x-dev.x
drupal / drupal 6.7 6.7.x
drupal / drupal 4.0.0 4.0.0.x
drupal / drupal 4.6.7 4.6.7.x
drupal / drupal 6.22 6.22.x
drupal / drupal 7.0-alpha2 7.0-alpha2.x
drupal / drupal 5.0-rc1 5.0-rc1.x
drupal / drupal 4.5.5 4.5.5.x
drupal / drupal 4.7_rev1.15 4.7_rev1.15.x
drupal / drupal 4.7.9 4.7.9.x
drupal / drupal 4.7 4.7.x
drupal / drupal 6.8 6.8.x
drupal / drupal 4.7.6 4.7.6.x
drupal / drupal 6.19 6.19.x
drupal / drupal 7.11 7.11.x
drupal / drupal 4.6.11 4.6.11.x
drupal / drupal 4.1.0 4.1.0.x
drupal / drupal 5.0-dev 5.0-dev.x
drupal / drupal 6.1 6.1.x
drupal / drupal 5.6 5.6.x
drupal / drupal 6.21 6.21.x
drupal / drupal 7.0-alpha6 7.0-alpha6.x
drupal / drupal 5.0-beta2 5.0-beta2.x
drupal / drupal 6.17 6.17.x
drupal / drupal 5.1 5.1.x
drupal / drupal 6.5 6.5.x
drupal / drupal 6.x-dev 6.x-dev.x
drupal / drupal 4.4.3 4.4.3.x
drupal / drupal 5.19 5.19.x
drupal / drupal 4.7.7 4.7.7.x
drupal / drupal 4.2.0_rc 4.2.0_rc.x
drupal / drupal 7.0 7.0.x
drupal / drupal 5.5 5.5.x
drupal / drupal - 7.12.x
drupal / drupal 4.5 4.5.x
drupal / drupal 6.10 6.10.x
drupal / drupal 7.0-beta1 7.0-beta1.x
drupal / drupal 6.23 6.23.x
drupal / drupal 6.6 6.6.x
drupal / drupal 6.0 6.0.x
drupal / drupal 7.1 7.1.x
drupal / drupal 5.14 5.14.x
drupal / drupal 5.9 5.9.x
drupal / drupal 6.0-rc-4 6.0-rc-4.x
drupal / drupal 5.8 5.8.x
drupal / drupal 6.15 6.15.x
drupal / drupal 6.0-beta3 6.0-beta3.x
drupal / drupal 5.3 5.3.x
drupal / drupal 6.16 6.16.x
drupal / drupal 7.7 7.7.x
drupal / drupal 7.0-alpha3 7.0-alpha3.x
drupal / drupal 6.3 6.3.x
drupal / drupal 4.6.1 4.6.1.x
drupal / drupal 7.2 7.2.x
drupal / drupal 4.7.4 4.7.4.x
drupal / drupal 4.7.1 4.7.1.x
drupal / drupal 5.0-beta1 5.0-beta1.x
drupal / drupal 6.0-rc1 6.0-rc1.x
drupal / drupal 4.5.3 4.5.3.x
drupal / drupal 5.5. 5.5..x
drupal / drupal 4.7_rev_1.2 4.7_rev_1.2.x
drupal / drupal 4.4.0 4.4.0.x
drupal / drupal 4.5.6 4.5.6.x
drupal / drupal 5.11 5.11.x
drupal / drupal 4.7_rev_1.15 4.7_rev_1.15.x
drupal / drupal 6.20 6.20.x
drupal / drupal 4.6.6 4.6.6.x
drupal / drupal 5.20 5.20.x
drupal / drupal 6.9 6.9.x