Multiple open redirect vulnerabilities in the Tadaa! module before 7.x-1.4 for Drupal allow remote attackers to redirect users to arbitrary web sites and conduct phishing attacks via a URL in a destination parameter, related to callbacks that (1) enable and disable modules or (2) change variables.
References
Configurations
History
No history.
Information
Published : 2015-04-21 16:59
Updated : 2025-04-12 10:46
NVD link : CVE-2015-3358
Mitre link : CVE-2015-3358
CVE.ORG link : CVE-2015-3358
JSON object : View
Products Affected
tadaa\!_project
- tadaa\!
CWE