CVE Vulnerabilities

CVE-2010-3091

Improper Authentication

Published: Sep 29, 2010 | Modified: Sep 30, 2010
CVSS 3.x
N/A
Source:
NVD
CVSS 2.x
5 MEDIUM
AV:N/AC:L/Au:N/C:N/I:P/A:N
RedHat/V2
RedHat/V3
Ubuntu
MEDIUM

The OpenID module in Drupal 6.x before 6.18, and the OpenID module 5.x before 5.x-1.4 for Drupal, violates the OpenID 2.0 protocol by not verifying the openid.return_to value, which allows remote attackers to bypass authentication by leveraging an assertion from an OpenID provider.

Weakness

When an actor claims to have a given identity, the product does not prove or insufficiently proves that the claim is correct.

Affected Software

Name Vendor Start Version End Version
Drupal Drupal 6.0 (including) 6.0 (including)
Drupal Drupal 6.0-beta1 (including) 6.0-beta1 (including)
Drupal Drupal 6.0-beta2 (including) 6.0-beta2 (including)
Drupal Drupal 6.0-beta3 (including) 6.0-beta3 (including)
Drupal Drupal 6.0-beta4 (including) 6.0-beta4 (including)
Drupal Drupal 6.0-dev (including) 6.0-dev (including)
Drupal Drupal 6.0-rc1 (including) 6.0-rc1 (including)
Drupal Drupal 6.0-rc2 (including) 6.0-rc2 (including)
Drupal Drupal 6.0-rc3 (including) 6.0-rc3 (including)
Drupal Drupal 6.0-rc4 (including) 6.0-rc4 (including)
Drupal Drupal 6.1 (including) 6.1 (including)
Drupal Drupal 6.2 (including) 6.2 (including)
Drupal Drupal 6.3 (including) 6.3 (including)
Drupal Drupal 6.4 (including) 6.4 (including)
Drupal Drupal 6.5 (including) 6.5 (including)
Drupal Drupal 6.6 (including) 6.6 (including)
Drupal Drupal 6.7 (including) 6.7 (including)
Drupal Drupal 6.8 (including) 6.8 (including)
Drupal Drupal 6.9 (including) 6.9 (including)
Drupal Drupal 6.10 (including) 6.10 (including)
Drupal Drupal 6.11 (including) 6.11 (including)
Drupal Drupal 6.12 (including) 6.12 (including)
Drupal Drupal 6.13 (including) 6.13 (including)
Drupal Drupal 6.14 (including) 6.14 (including)
Drupal Drupal 6.15 (including) 6.15 (including)
Drupal Drupal 6.16 (including) 6.16 (including)
Drupal Drupal 6.17 (including) 6.17 (including)
Drupal6 Ubuntu jaunty *
Drupal6 Ubuntu karmic *
Drupal6 Ubuntu upstream *

Potential Mitigations

References