Unrated severityNVD Advisory· Published Feb 1, 2007· Updated Jun 16, 2026
CVE-2007-0658
CVE-2007-0658
Description
The (1) Textimage 4.7.x before 4.7-1.2 and 5.x before 5.x-1.1 module for Drupal and the (2) Captcha 4.7.x before 4.7-1.2 and 5.x before 5.x-1.1 module for Drupal allow remote attackers to bypass the CAPTCHA test via an empty captcha element in $_SESSION.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
14cpe:2.3:a:drupal:drupal:4.7.1:*:*:*:*:*:*:*+ 9 more
- cpe:2.3:a:drupal:drupal:4.7.1:*:*:*:*:*:*:*
- cpe:2.3:a:drupal:drupal:4.7.2:*:*:*:*:*:*:*
- cpe:2.3:a:drupal:drupal:4.7.3:*:*:*:*:*:*:*
- cpe:2.3:a:drupal:drupal:4.7.4:*:*:*:*:*:*:*
- cpe:2.3:a:drupal:drupal:4.7.5:*:*:*:*:*:*:*
- cpe:2.3:a:drupal:drupal:4.7.6:*:*:*:*:*:*:*
- cpe:2.3:a:drupal:drupal:4.7:*:*:*:*:*:*:*
- cpe:2.3:a:drupal:drupal:4.7_rev1.15:*:*:*:*:*:*:*
- cpe:2.3:a:drupal:drupal:5.0:*:*:*:*:*:*:*
- cpe:2.3:a:drupal:drupal:5.1:*:*:*:*:*:*:*
Patches
Vulnerability mechanics
References
12- cvs.drupal.org/viewcvs/drupal/contributions/modules/captcha/captcha.modulenvdPatch
- cvs.drupal.org/viewcvs/drupal/contributions/modules/textimage/captcha.incnvdPatch
- drupal.org/node/114364nvdPatchVendor Advisory
- drupal.org/node/114519nvdPatchVendor Advisory
- secunia.com/advisories/23983nvdPatchVendor Advisory
- secunia.com/advisories/23985nvdPatchVendor Advisory
- osvdb.org/32137nvd
- osvdb.org/32138nvd
- www.securityfocus.com/bid/22329nvd
- www.vupen.com/english/advisories/2007/0431nvd
- exchange.xforce.ibmcloud.com/vulnerabilities/31984nvd
- exchange.xforce.ibmcloud.com/vulnerabilities/31994nvd
News mentions
0No linked articles in our index yet.