Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-vqp6-f6x9-5r96

Опубликовано: 21 апр. 2022
Источник: github
Github: Не прошло ревью

Описание

Drupal 6.x before 6.16 and 5.x before version 5.22 does not properly block users under certain circumstances. A user with an open session that was blocked could maintain their session on the Drupal site despite being blocked.

Drupal 6.x before 6.16 and 5.x before version 5.22 does not properly block users under certain circumstances. A user with an open session that was blocked could maintain their session on the Drupal site despite being blocked.

EPSS

Процентиль: 56%
0.0034
Низкий

Связанные уязвимости

CVSS3: 6.5
ubuntu
больше 5 лет назад

Drupal 6.x before 6.16 and 5.x before version 5.22 does not properly block users under certain circumstances. A user with an open session that was blocked could maintain their session on the Drupal site despite being blocked.

CVSS3: 6.5
nvd
больше 5 лет назад

Drupal 6.x before 6.16 and 5.x before version 5.22 does not properly block users under certain circumstances. A user with an open session that was blocked could maintain their session on the Drupal site despite being blocked.

CVSS3: 6.5
debian
больше 5 лет назад

Drupal 6.x before 6.16 and 5.x before version 5.22 does not properly b ...

EPSS

Процентиль: 56%
0.0034
Низкий