Описание
The OpenID module in Drupal 7.x before 7.16 allows remote OpenID servers to read arbitrary files via a crafted DOCTYPE declaration in an XRDS file.
Пакеты
Пакет | Статус | Версия исправления | Релиз | Тип |
---|---|---|---|---|
drupal7 | fixed | 7.14-1.1 | package | |
drupal6 | not-affected | package |
Примечания
http://drupal.org/node/1815912
EPSS
Процентиль: 98%
0.56287
Средний
Связанные уязвимости
ubuntu
больше 12 лет назад
The OpenID module in Drupal 7.x before 7.16 allows remote OpenID servers to read arbitrary files via a crafted DOCTYPE declaration in an XRDS file.
nvd
больше 12 лет назад
The OpenID module in Drupal 7.x before 7.16 allows remote OpenID servers to read arbitrary files via a crafted DOCTYPE declaration in an XRDS file.
github
около 3 лет назад
The OpenID module in Drupal 7.x before 7.16 allows remote OpenID servers to read arbitrary files via a crafted DOCTYPE declaration in an XRDS file.
EPSS
Процентиль: 98%
0.56287
Средний