6
CVE-2013-0226
- EPSS 0.95%
- Veröffentlicht 19.03.2013 14:55:02
- Zuletzt bearbeitet 29.04.2026 01:13:23
- CVE-Watchlists
- Unerledigt
The Keyboard Shortcut Utility module 7.x-1.x before 7.x-1.1 for Drupal does not properly check node restrictions, which allows (1) remote authenticated users with the "view shortcuts" permission to read nodes or (2) remote authenticated users with the "admin shortcuts" permission to read, edit, or delete nodes via unspecified vectors.
Daten sind bereitgestellt durch National Vulnerability Database (NVD)
Zugec Ivan ≫ Keyboard Shortcut Utility Version7.x-1.0
| Typ | Quelle | Score | Percentile |
|---|---|---|---|
| EPSS | FIRST.org | 0.95% | 0.564 |
| Quelle | Base Score | Exploit Score | Impact Score | Vector String |
|---|---|---|---|---|
| NIST | 6 | 6.8 | 6.4 |
AV:N/AC:M/Au:S/C:P/I:P/A:P
|
http://www.openwall.com/lists/oss-security/2013/01/25/4
https://drupal.org/node/1896752