7.5
CVE-2012-4498
- EPSS 1.52%
- Veröffentlicht 02.11.2012 15:55:01
- Zuletzt bearbeitet 16.06.2026 23:45:12
- Quelle secalert@redhat.com
- CVE-Watchlists
- Unerledigt
The Activism module 6.x-2.x before 6.x-2.1 for Drupal does not properly restrict access to the "Campaign" content type, which might allow remote attackers to bypass access restrictions and possibly have other unspecified impact.
Daten sind bereitgestellt durch National Vulnerability Database (NVD)
Morbus Iff ≫ Activism Version6.x-2.0
Morbus Iff ≫ Activism Version6.x-2.x Updatedev
| Typ | Quelle | Score | Percentile |
|---|---|---|---|
| EPSS | FIRST.org | 1.52% | 0.713 |
| Quelle | Base Score | Exploit Score | Impact Score | Vector String |
|---|---|---|---|---|
| nvd@nist.gov | 7.5 | 10 | 6.4 |
AV:N/AC:L/Au:N/C:P/I:P/A:P
|
http://www.openwall.com/lists/oss-security/2012/10/04/6
http://www.openwall.com/lists/oss-security/2012/10/07/1
http://drupal.org/node/1762152
http://drupal.org/node/1762160