4.3
CVE-2012-2304
- EPSS 0.59%
- Veröffentlicht 14.08.2012 22:55:02
- Zuletzt bearbeitet 11.04.2025 00:51:21
- Quelle secalert@redhat.com
- CVE-Watchlists
- Unerledigt
The Linkit module 7.x-2.x before 7.x-2.3 for Drupal, when using an entity access module, does not check permissions when searching for entities, which allows remote attackers to obtain sensitive information via unspecified vectors.
Daten sind bereitgestellt durch National Vulnerability Database (NVD)
Emil Stjerneman ≫ Linkit Version7.x-2.0
Emil Stjerneman ≫ Linkit Version7.x-2.0 Updatebeta1
Emil Stjerneman ≫ Linkit Version7.x-2.0 Updatebeta2
Emil Stjerneman ≫ Linkit Version7.x-2.1
Emil Stjerneman ≫ Linkit Version7.x-2.2
Emil Stjerneman ≫ Linkit Version7.x-2.3
| Typ | Quelle | Score | Percentile |
|---|---|---|---|
| EPSS | FIRST.org | 0.59% | 0.666 |
| Quelle | Base Score | Exploit Score | Impact Score | Vector String |
|---|---|---|---|---|
| nvd@nist.gov | 4.3 | 8.6 | 2.9 |
AV:N/AC:M/Au:N/C:P/I:N/A:N
|