7.5
CVE-2025-14840
- EPSS 0.06%
- Veröffentlicht 28.01.2026 20:03:21
- Zuletzt bearbeitet 06.02.2026 18:48:00
- Quelle mlhess@drupal.org
- CVE-Watchlists
- Unerledigt
Improper Check for Unusual or Exceptional Conditions vulnerability in Drupal HTTP Client Manager allows Forceful Browsing.This issue affects HTTP Client Manager: from 0.0.0 before 9.3.13, from 10.0.0 before 10.0.2, from 11.0.0 before 11.0.1.
Daten sind bereitgestellt durch National Vulnerability Database (NVD)
Bmeme ≫ Http Client Manager SwPlatformdrupal Version < 9.3.13
Bmeme ≫ Http Client Manager SwPlatformdrupal Version >= 10.0.0 < 10.0.2
Bmeme ≫ Http Client Manager Version11.0.0 SwPlatformdrupal
| Typ | Quelle | Score | Percentile |
|---|---|---|---|
| EPSS | FIRST.org | 0.06% | 0.188 |
| Quelle | Base Score | Exploit Score | Impact Score | Vector String |
|---|---|---|---|---|
| 134c704f-9b21-4f2e-91b3-4a467353bcc0 | 7.5 | 3.9 | 3.6 |
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H
|
CWE-754 Improper Check for Unusual or Exceptional Conditions
The product does not check or incorrectly checks for unusual or exceptional conditions that are not expected to occur frequently during day to day operation of the product.