Heap
05-02-08, 19:29
Unspecified vulnerability in the IP-authentication feature in the Secure Site 5.x-1.0 and 4.7.x-1.0 module for Drupal allows remote attackers to gain the privileges of a user who has authenticated from behind the same proxy server as the attacker.
More... (http://nvd.nist.gov/nvd.cfm?cvename=CVE-2008-0568)
More... (http://nvd.nist.gov/nvd.cfm?cvename=CVE-2008-0568)