Vulnerabilities > CVE-2015-3371 - Unspecified vulnerability in Node Invite Project Node Invite 6.X2.3
Attack vector
UNKNOWN Attack complexity
UNKNOWN Privileges required
UNKNOWN Confidentiality impact
UNKNOWN Integrity impact
UNKNOWN Availability impact
UNKNOWN Summary
Open redirect vulnerability in the Node Invite module before 6.x-2.5 for Drupal allows remote attackers to redirect users to arbitrary web sites and conduct phishing attacks via the destination parameter.
Vulnerable Configurations
Part | Description | Count |
---|---|---|
Application | 1 |
References
- http://www.openwall.com/lists/oss-security/2015/01/29/6
- http://www.openwall.com/lists/oss-security/2015/01/29/6
- http://www.securityfocus.com/bid/74287
- http://www.securityfocus.com/bid/74287
- https://www.drupal.org/node/2415541
- https://www.drupal.org/node/2415541
- https://www.drupal.org/node/2415899
- https://www.drupal.org/node/2415899