Cross-site request forgery (CSRF) vulnerability in the Services module 6.x-3.x and 7.x-3.x before 7.x-3.4 for Drupal allows remote attackers to hijack the authentication of unspecified victims via unknown vectors.
https://exchange.xforce.ibmcloud.com/vulnerabilities/84791
https://drupal.org/node/2012982
https://drupal.org/node/2012366
http://www.securityfocus.com/bid/60356
http://secunia.com/advisories/53661
http://secunia.com/advisories/53649