CVE-2007-1652

OpenID allows remote attackers to forcibly log a user into an OpenID enabled site, divulge the user's personal information to this site, and add it site to the trusted sites list via a crafted web page, related to cached tokens.
Configurations

Configuration 1

cpe:2.3:a:openid:openid:*:*:*:*:*:*:*:*

Information

Published : 2007-03-24 12:19

Updated : 2008-11-13 06:35


NVD link : CVE-2007-1652

Mitre link : CVE-2007-1652

Products Affected
No products.