Security Advisory

CVE-2016-3164

CVE vulnerability detail — eXtreme Datacenter Security Operations

Published 2016-04-12 15:00:00
Last updated 2024-08-05 23:47:57
Assigner mitre
State PUBLISHED

Description

Drupal 6.x before 6.38, 7.x before 7.43, and 8.x before 8.0.4 might allow remote attackers to conduct open redirect attacks by leveraging (1) custom code or (2) a form shown on a 404 error page, related to path manipulation.