CVE

Id
80635  
CVE No.
CVE-2015-3358  
Status
Candidate  
Description
Multiple open redirect vulnerabilities in the Tadaa! module before 7.x-1.4 for Drupal allow remote attackers to redirect users to arbitrary web sites and conduct phishing attacks via a URL in a destination parameter, related to callbacks that (1) enable and disable modules or (2) change variables.  
Phase
Assigned (20150421)  
Votes
None (candidate not yet proposed)  
Comments