← Back

CVE-2008-6169

nvd nist
Published: Feb 19, 2009Modified: Apr 23, 2026

JSON object

Loading...
6.8
Vector
AV:N/AC:M/Au:N/C:P/I:P/A:P
Exploitability: 8.6 / Impact: 6.4
Source: NVD

Description

Cross-site request forgery (CSRF) vulnerability in the Localization client 5.x before 5.x-1.1 and 6.x before 6.x-1.6 and the Localization server 5.x before 5.x-1.0-alpha5 and 6.x before 6.x-alpha2, modules for Drupal, allows remote attackers to perform unauthorized actions as administrators via unspecified vectors related to the "local translation submission interface."

Affected (16)

2 products
Localization Client
Localization Server
Configuration A
16 vulnerable
Vulnerable SoftwareAffected Versions
Drupal
Up to 5.x-1.0
Up to 6.x-1.5
Version 5.x-1.xdev
Version 6.x-1.0
Version 6.x-1.1
Version 6.x-1.2
Version 6.x-1.3
Version 6.x-1.4
Version 6.x-1.xdev
Drupal
Up to 5.x-1.0alpha4
Up to 6.x-1.0alpha1
Version 5.x-1.0alpha1
Version 5.x-1.0alpha2
Version 5.x-1.0alpha3
Version 5.x-1.xdev
Version 6.x-1.xdev

References (6)

Source: cve@mitre.org
PatchVendor Advisory
Source: cve@mitre.org
Vendor Advisory
Source: af854a3a-2127-422b-91ae-364da2661108
PatchVendor Advisory
Source: af854a3a-2127-422b-91ae-364da2661108
Vendor Advisory
Source: af854a3a-2127-422b-91ae-364da2661108

Timeline

No history available yet.