5

CVE-2013-1907

The Commons Group module before 7.x-3.1 for Drupal, as used in the Commons module before 7.x-3.1, does not properly restrict access to groups, which allows remote attackers to post arbitrary content to groups via unspecified vectors.

Data is provided by the National Vulnerability Database (NVD)
AcquiaCommons Version <= 7.x-3.0
   DrupalDrupal Version-
AcquiaCommons Version_group7.x-3.x Updatedev
   DrupalDrupal Version-
AcquiaCommons Version7.x-3.x Updatedev
   DrupalDrupal Version-
AcquiaCommons Group Version <= 7.x-3.0
   DrupalDrupal Version-
Zu dieser CVE wurde keine CISA KEV oder CERT.AT-Warnung gefunden.
EPSS Metriken
Type Source Score Percentile
EPSS FIRST.org 0.75% 0.707
CVSS Metriken
Source Base Score Exploit Score Impact Score Vector string
nvd@nist.gov 5 10 2.9
AV:N/AC:L/Au:N/C:N/I:P/A:N