5
CVE-2013-5965
- EPSS 1.37%
- Veröffentlicht 30.09.2013 21:55:07
- Zuletzt bearbeitet 29.04.2026 01:13:23
- Quelle cve@mitre.org
- CVE-Watchlists
- Unerledigt
The Node View Permissions module 7.x-1.x before 7.x-1.2 for Drupal does not properly implement the hook_query_alter function, which might allow remote attackers to obtain sensitive information by reading a node listing.
Daten sind bereitgestellt durch National Vulnerability Database (NVD)
Adcisolutions ≫ Node View Permissions Version <= 7.x-1.1
Adcisolutions ≫ Node View Permissions Version7.x-1.0
| Typ | Quelle | Score | Percentile |
|---|---|---|---|
| EPSS | FIRST.org | 1.37% | 0.683 |
| Quelle | Base Score | Exploit Score | Impact Score | Vector String |
|---|---|---|---|---|
| nvd@nist.gov | 5 | 10 | 2.9 |
AV:N/AC:L/Au:N/C:P/I:N/A:N
|
http://archives.neohapsis.com/archives/bugtraq/2013-08/0184.html
http://secunia.com/advisories/54550
http://www.openwall.com/lists/oss-security/2013/09/11/9
https://drupal.org/node/2031621
https://drupal.org/node/2076315