Security Advisory
CVE-2012-2720
CVE vulnerability detail - eXtreme Datacenter Security Operations
Description
The Token Authentication (tokenauth) module 6.x-1.x before 6.x-1.7 for Drupal does not properly revert user sessions, which might allow remote attackers to perform requests with extra privileges.