4.9

CVE-2013-7068

The Organic Groups (OG) module 7.x-2.x before 7.x-2.3 for Drupal allows remote authenticated users to bypass group restrictions on nodes with all groups set to optional input via an empty group field.
Daten sind bereitgestellt durch National Vulnerability Database (NVD)
Organic Groups Project ≫ Organic Groups Version 7.x-2.0 Update - SwPlatform drupal
Organic Groups Project ≫ Organic Groups Version 7.x-2.0 Update alpha1 SwPlatform drupal
Organic Groups Project ≫ Organic Groups Version 7.x-2.0 Update alpha2 SwPlatform drupal
Organic Groups Project ≫ Organic Groups Version 7.x-2.0 Update alpha3 SwPlatform drupal
Organic Groups Project ≫ Organic Groups Version 7.x-2.0 Update beta1 SwPlatform drupal
Organic Groups Project ≫ Organic Groups Version 7.x-2.0 Update beta2 SwPlatform drupal
Organic Groups Project ≫ Organic Groups Version 7.x-2.0 Update beta3 SwPlatform drupal
Organic Groups Project ≫ Organic Groups Version 7.x-2.0 Update beta4 SwPlatform drupal
Organic Groups Project ≫ Organic Groups Version 7.x-2.0 Update rc1 SwPlatform drupal
Organic Groups Project ≫ Organic Groups Version 7.x-2.0 Update rc2 SwPlatform drupal
Organic Groups Project ≫ Organic Groups Version 7.x-2.0 Update rc3 SwPlatform drupal
Organic Groups Project ≫ Organic Groups Version 7.x-2.0 Update rc4 SwPlatform drupal
Organic Groups Project ≫ Organic Groups Version 7.x-2.1 SwPlatform drupal
Organic Groups Project ≫ Organic Groups Version 7.x-2.2 SwPlatform drupal
Organic Groups Project ≫ Organic Groups Version 7.x-2.x Update dev SwPlatform drupal
Zu dieser CVE wurde keine Warnung gefunden.
EPSS Metriken
Typ Quelle Score Percentile
EPSS FIRST.org 0.99% 0.58
CVSS Metriken
Quelle Base Score Exploit Score Impact Score Vector String
NIST 4.9 6.8 4.9
AV:N/AC:M/Au:S/C:P/I:P/A:N
Es wurden noch keine Informationen zu CWE veröffentlicht.
http://www.openwall.com/lists/oss-security/2013/12/06/7
http://www.openwall.com/lists/oss-security/2013/12/12/1
https://drupal.org/node/2140209
Patch
https://drupal.org/node/2140217
Patch
Vendor Advisory