CVE Vulnerabilities

CVE-2007-0658

Published: Feb 01, 2007 | Modified: Apr 09, 2025
CVSS 3.x
N/A
Source:
NVD
CVSS 2.x
5 MEDIUM
AV:N/AC:L/Au:N/C:N/I:P/A:N
RedHat/V2
RedHat/V3
Ubuntu
root.io logo minimus.io logo echo.ai logo

The (1) Textimage 4.7.x before 4.7-1.2 and 5.x before 5.x-1.1 module for Drupal and the (2) Captcha 4.7.x before 4.7-1.2 and 5.x before 5.x-1.1 module for Drupal allow remote attackers to bypass the CAPTCHA test via an empty captcha element in $_SESSION.

Affected Software

NameVendorStart VersionEnd Version
DrupalDrupal4.7 (including)4.7 (including)
DrupalDrupal4.7.1 (including)4.7.1 (including)
DrupalDrupal4.7.2 (including)4.7.2 (including)
DrupalDrupal4.7.3 (including)4.7.3 (including)
DrupalDrupal4.7.4 (including)4.7.4 (including)
DrupalDrupal4.7.5 (including)4.7.5 (including)
DrupalDrupal4.7.6 (including)4.7.6 (including)
DrupalDrupal4.7_rev1.15 (including)4.7_rev1.15 (including)
DrupalDrupal5.0 (including)5.0 (including)
DrupalDrupal5.1 (including)5.1 (including)
TextimageDrupal4.7 (including)4.7 (including)
TextimageDrupal5.0 (including)5.0 (including)

References