4

CVE-2015-3379

The Views module before 6.x-2.18, 6.x-3.x before 6.x-3.2, and 7.x-3.x before 7.x-3.10 for Drupal does not properly restrict access to the default views configurations, which allows remote authenticated users to obtain sensitive information via unspecified vectors.
Daten sind bereitgestellt durch National Vulnerability Database (NVD)
Views Project ≫ Views SwPlatform drupal Version <= 6.x-2.16
Views Project ≫ Views Version 6.x-3.0 SwPlatform drupal
Views Project ≫ Views Version 6.x-3.0 Update alpha1 SwPlatform drupal
Views Project ≫ Views Version 6.x-3.0 Update alpha2 SwPlatform drupal
Views Project ≫ Views Version 6.x-3.0 Update alpha3 SwPlatform drupal
Views Project ≫ Views Version 6.x-3.0 Update alpha4 SwPlatform drupal
Views Project ≫ Views Version 6.x-3.0 Update rc2 SwPlatform drupal
Views Project ≫ Views Version 6.x-3.0 Update rc3 SwPlatform drupal
Views Project ≫ Views Version 7.x-3.0 SwPlatform drupal
Views Project ≫ Views Version 7.x-3.0 Update alpha1 SwPlatform drupal
Views Project ≫ Views Version 7.x-3.0 Update beta1 SwPlatform drupal
Views Project ≫ Views Version 7.x-3.0 Update beta2 SwPlatform drupal
Views Project ≫ Views Version 7.x-3.0 Update beta3 SwPlatform drupal
Views Project ≫ Views Version 7.x-3.0 Update rc1 SwPlatform drupal
Views Project ≫ Views Version 7.x-3.0 Update rc3 SwPlatform drupal
Views Project ≫ Views Version 7.x-3.1 SwPlatform drupal
Views Project ≫ Views Version 7.x-3.2 SwPlatform drupal
Views Project ≫ Views Version 7.x-3.3 SwPlatform drupal
Views Project ≫ Views Version 7.x-3.4 SwPlatform drupal
Views Project ≫ Views Version 7.x-3.5 SwPlatform drupal
Views Project ≫ Views Version 7.x-3.6 SwPlatform drupal
Views Project ≫ Views Version 7.x-3.7 SwPlatform drupal
Views Project ≫ Views Version 7.x-3.8 SwPlatform drupal
Views Project ≫ Views Version 7.x-3.x Update dev SwPlatform drupal
Zu dieser CVE wurde keine Warnung gefunden.
EPSS Metriken
Typ Quelle Score Percentile
EPSS FIRST.org 1.09% 0.622
CVSS Metriken
Quelle Base Score Exploit Score Impact Score Vector String
NIST 4 8 2.9
AV:N/AC:L/Au:S/C:P/I:N/A:N
Es wurden noch keine Informationen zu CWE veröffentlicht.
http://www.openwall.com/lists/oss-security/2015/02/13/12
https://www.drupal.org/node/2424097
Patch
https://www.drupal.org/node/2424101
Patch
https://www.drupal.org/node/2424103
Patch
https://www.drupal.org/node/2424403
Patch
Vendor Advisory