7.5

CVE-2012-2303

Exploit
The Spaces module 6.x-3.x before 6.x-3.4 for Drupal does not enforce permissions on non-object pages, which allows remote attackers to obtain sensitive information and possibly have other impacts via unspecified vectors to the (1) Spaces or (2) Spaces OG module.
Daten sind bereitgestellt durch National Vulnerability Database (NVD)
Florian WeberSpaces Version6.x-3.0
   DrupalDrupal Version-
Florian WeberSpaces Version6.x-3.0 Updatealpha1
   DrupalDrupal Version-
Florian WeberSpaces Version6.x-3.0 Updatealpha2
   DrupalDrupal Version-
Florian WeberSpaces Version6.x-3.0 Updatebeta1
   DrupalDrupal Version-
Florian WeberSpaces Version6.x-3.0 Updatebeta2
   DrupalDrupal Version-
Florian WeberSpaces Version6.x-3.0 Updatebeta3
   DrupalDrupal Version-
Florian WeberSpaces Version6.x-3.0 Updatebeta4
   DrupalDrupal Version-
Florian WeberSpaces Version6.x-3.0 Updatebeta5
   DrupalDrupal Version-
Florian WeberSpaces Version6.x-3.0 Updatebeta6
   DrupalDrupal Version-
Florian WeberSpaces Version6.x-3.0 Updater1
   DrupalDrupal Version-
Florian WeberSpaces Version6.x-3.0 Updater2
   DrupalDrupal Version-
Florian WeberSpaces Version6.x-3.1
   DrupalDrupal Version-
Florian WeberSpaces Version6.x-3.2
   DrupalDrupal Version-
Florian WeberSpaces Version6.x-3.3
   DrupalDrupal Version-
Zu dieser CVE wurde keine CISA KEV oder CERT.AT-Warnung gefunden.
EPSS Metriken
Typ Quelle Score Percentile
EPSS FIRST.org 0.83% 0.724
CVSS Metriken
Quelle Base Score Exploit Score Impact Score Vector String
nvd@nist.gov 7.5 10 6.4
AV:N/AC:L/Au:N/C:P/I:P/A:P
Es wurden noch keine Informationen zu CWE veröffentlicht.