CVE-2012-1589
Drupal Open Redirect
EPSS 1.4%
描述
Open redirect vulnerability in the Form API in Drupal 7.x before 7.13 allows remote attackers to redirect users to arbitrary web sites and conduct phishing attacks via crafted parameters in a destination URL.
如何修補 CVE-2012-1589
要修補 CVE-2012-1589,請將受影響套件升級到下列已修補版本。
- Packagist/drupal/drupal—升級至 7.13 或更新版本
CVE-2012-1589 正在被利用嗎?
低 — EPSS 為 1.4%,目前沒有觀察到大規模利用活動。
受影響套件(1)
- >= 7.0, < 7.13