Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-v3fw-qwc2-p7h6

Опубликовано: 17 мая 2022
Источник: github
Github: Не прошло ревью

Описание

Services 5.x before 5.x-0.92 and 6.x before 6.x-0.13, a module for Drupal, uses an insecure hash when signing requests, which allows remote attackers to impersonate other users and gain privileges.

Services 5.x before 5.x-0.92 and 6.x before 6.x-0.13, a module for Drupal, uses an insecure hash when signing requests, which allows remote attackers to impersonate other users and gain privileges.

EPSS

Процентиль: 68%
0.00585
Низкий

Связанные уязвимости

nvd
около 16 лет назад

Services 5.x before 5.x-0.92 and 6.x before 6.x-0.13, a module for Drupal, uses an insecure hash when signing requests, which allows remote attackers to impersonate other users and gain privileges.

EPSS

Процентиль: 68%
0.00585
Низкий