Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-xh74-ggrx-6v7p

Опубликовано: 17 мая 2022
Источник: github
Github: Не прошло ревью

Описание

The Twilio module 7.x-1.x before 7.x-1.9 for Drupal does not properly restrict access to the Twilio administration pages, which allows remote authenticated users to read and modify authentication tokens by leveraging the "access administration pages" Drupal permission.

The Twilio module 7.x-1.x before 7.x-1.9 for Drupal does not properly restrict access to the Twilio administration pages, which allows remote authenticated users to read and modify authentication tokens by leveraging the "access administration pages" Drupal permission.

EPSS

Процентиль: 37%
0.00157
Низкий

Связанные уязвимости

nvd
около 11 лет назад

The Twilio module 7.x-1.x before 7.x-1.9 for Drupal does not properly restrict access to the Twilio administration pages, which allows remote authenticated users to read and modify authentication tokens by leveraging the "access administration pages" Drupal permission.

EPSS

Процентиль: 37%
0.00157
Низкий