Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-7hx7-q7rx-7h3h

Опубликовано: 17 мая 2022
Источник: github
Github: Не прошло ревью

Описание

The AES encryption module 7.x-1.4 for Drupal leaves certain debugging code enabled in release, which records the plaintext password of the last logged-in user and allows remote attackers to gain privileges as that user.

The AES encryption module 7.x-1.4 for Drupal leaves certain debugging code enabled in release, which records the plaintext password of the last logged-in user and allows remote attackers to gain privileges as that user.

EPSS

Процентиль: 54%
0.0032
Низкий

Связанные уязвимости

nvd
больше 14 лет назад

The AES encryption module 7.x-1.4 for Drupal leaves certain debugging code enabled in release, which records the plaintext password of the last logged-in user and allows remote attackers to gain privileges as that user.

EPSS

Процентиль: 54%
0.0032
Низкий