5
CVE-2013-0257
- EPSS 1.17%
- Veröffentlicht 27.03.2013 21:55:02
- Zuletzt bearbeitet 29.04.2026 01:13:23
- Quelle secalert@redhat.com
- CVE-Watchlists
- Unerledigt
The email2image module 6.x-1.x and 6.x-2.x for Drupal does not properly restrict access to nodes, which allows remote attackers to read images of user email addresses and email fields.
Daten sind bereitgestellt durch National Vulnerability Database (NVD)
David Alkire ≫ Email2image Version6.x-1.x
David Alkire ≫ Email2image Version6.x-2.x
| Typ | Quelle | Score | Percentile |
|---|---|---|---|
| EPSS | FIRST.org | 1.17% | 0.634 |
| Quelle | Base Score | Exploit Score | Impact Score | Vector String |
|---|---|---|---|---|
| nvd@nist.gov | 5 | 10 | 2.9 |
AV:N/AC:L/Au:N/C:P/I:N/A:N
|
http://drupal.org/node/1903264
http://www.openwall.com/lists/oss-security/2013/02/05/1