Vulnerability Database

290,020

Total vulnerabilities in the database

CVE-2012-0825

Drupal 6.x before 6.23 and 7.x before 7.11 does not verify that Attribute Exchange (AX) information is signed, which allows remote attackers to modify potentially sensitive AX information without detection via a man-in-the-middle (MITM) attack.

  • Published: Oct 28, 2013
  • Updated: Apr 13, 2023
  • CVE: CVE-2012-0825
  • Severity: Medium
  • Exploit:

CVSS v2:

  • Severity: Medium
  • Score: 6.8
  • AV:N/AC:M/Au:N/C:P/I:P/A:P

CWEs:

Software From Fixed in
drupal / drupal 7.0-alpha5 7.0-alpha5.x
drupal / drupal 7.0-dev 7.0-dev.x
drupal / drupal 7.0-alpha7 7.0-alpha7.x
drupal / drupal 6.0-beta2 6.0-beta2.x
drupal / drupal 6.0-rc2 6.0-rc2.x
drupal / drupal 6.2 6.2.x
drupal / drupal 7.0-rc2 7.0-rc2.x
drupal / drupal 7.0-rc4 7.0-rc4.x
drupal / drupal 6.14 6.14.x
drupal / drupal 6.13 6.13.x
drupal / drupal 6.0-dev 6.0-dev.x
drupal / drupal 6.18 6.18.x
drupal / drupal 7.0-beta2 7.0-beta2.x
drupal / drupal 7.0-rc3 7.0-rc3.x
drupal / drupal 7.0-alpha1 7.0-alpha1.x
drupal / drupal 6.0-beta4 6.0-beta4.x
drupal / drupal 7.3 7.3.x
drupal / drupal 6.12 6.12.x
drupal / drupal 7.8 7.8.x
drupal / drupal 7.0-alpha4 7.0-alpha4.x
drupal / drupal 6.0-rc3 6.0-rc3.x
drupal / drupal 6.0-rc4 6.0-rc4.x
drupal / drupal 7.5 7.5.x
drupal / drupal 6.11 6.11.x
drupal / drupal 7.10 7.10.x
drupal / drupal 7.6 7.6.x
drupal / drupal 6.0-beta1 6.0-beta1.x
drupal / drupal 7.9 7.9.x
drupal / drupal 7.0-rc1 7.0-rc1.x
drupal / drupal 7.0-beta3 7.0-beta3.x
drupal / drupal 7.4 7.4.x
drupal / drupal 7.x-dev 7.x-dev.x
drupal / drupal 6.22 6.22.x
drupal / drupal 7.0-alpha2 7.0-alpha2.x
drupal / drupal 6.19 6.19.x
drupal / drupal 6.1 6.1.x
drupal / drupal 6.21 6.21.x
drupal / drupal 7.0-alpha6 7.0-alpha6.x
drupal / drupal 6.17 6.17.x
drupal / drupal 7.0 7.0.x
drupal / drupal 6.10 6.10.x
drupal / drupal 7.0-beta1 7.0-beta1.x
drupal / drupal 6.23 6.23.x
drupal / drupal 6.0 6.0.x
drupal / drupal 7.1 7.1.x
drupal / drupal 6.15 6.15.x
drupal / drupal 6.0-beta3 6.0-beta3.x
drupal / drupal 6.16 6.16.x
drupal / drupal 7.7 7.7.x
drupal / drupal 7.0-alpha3 7.0-alpha3.x
drupal / drupal 7.2 7.2.x
drupal / drupal 6.0-rc1 6.0-rc1.x
drupal / drupal 6.20 6.20.x