Open Redirect Vulnerability in Drupal's Content Construction Kit
CVE-2015-5510

Currently unrated

What is CVE-2015-5510?

The Content Construction Kit (CCK) for Drupal, specifically versions 6.x-2.x prior to 6.x-2.10, contains an open redirect vulnerability. This flaw enables remote attackers to manipulate the destinations parameter, leading to the potential redirection of users to malicious websites. Such attacks exploit trusted administration pages, increasing the risk of phishing attempts and unauthorized access to sensitive user information.

References

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.