CVE

Id
80652  
CVE No.
CVE-2015-3375  
Status
Candidate  
Description
Cross-site request forgery (CSRF) vulnerability in the Shibboleth Authentication module before 6.x-4.1 and 7.x-4.x before 7.x-4.1 for Drupal allows remote attackers to hijack the authentication of administrators for requests that delete user role matching rules via unspecified vectors.  
Phase
Assigned (20150421)  
Votes
None (candidate not yet proposed)  
Comments