4.3
CVE-2014-5179
- EPSS 0.21%
- Veröffentlicht 06.08.2014 18:55:06
- Zuletzt bearbeitet 12.04.2025 10:46:40
- Quelle cve@mitre.org
- CVE-Watchlists
- Unerledigt
The freelinking module for Drupal, as used in the Freelinking for Case Tracker module, does not properly check access permissions for (1) nodes or (2) users, which allows remote attackers to obtain sensitive information via a crafted link.
Daten sind bereitgestellt durch National Vulnerability Database (NVD)
Freelinking For Case Tracker Project ≫ Freelinking For Case Tracker Version- SwPlatformdrupal
Freelinking Project ≫ Freelinking Version- SwPlatformdrupal
| Typ | Quelle | Score | Percentile |
|---|---|---|---|
| EPSS | FIRST.org | 0.21% | 0.41 |
| Quelle | Base Score | Exploit Score | Impact Score | Vector String |
|---|---|---|---|---|
| nvd@nist.gov | 4.3 | 8.6 | 2.9 |
AV:N/AC:M/Au:N/C:P/I:N/A:N
|