Описание
The user module in Drupal 5.x before 5.11 and 6.x before 6.5 might allow remote authenticated users to bypass intended login access rules and successfully login via unknown vectors.
Ссылки
- PatchVendor Advisory
- Third Party Advisory
- Mailing ListThird Party Advisory
- Third Party AdvisoryVDB Entry
- PatchVendor Advisory
- Third Party Advisory
- Mailing ListThird Party Advisory
- Third Party AdvisoryVDB Entry
Уязвимые конфигурации
Конфигурация 1Версия от 5.0 (включая) до 5.11 (исключая)Версия от 6.0 (включая) до 6.5 (исключая)
Одно из
cpe:2.3:a:drupal:drupal:*:*:*:*:*:*:*:*
cpe:2.3:a:drupal:drupal:*:*:*:*:*:*:*:*
EPSS
Процентиль: 63%
0.00465
Низкий
6 Medium
CVSS2
Дефекты
CWE-264
Связанные уязвимости
ubuntu
больше 16 лет назад
The user module in Drupal 5.x before 5.11 and 6.x before 6.5 might allow remote authenticated users to bypass intended login access rules and successfully login via unknown vectors.
debian
больше 16 лет назад
The user module in Drupal 5.x before 5.11 and 6.x before 6.5 might all ...
github
около 3 лет назад
The user module in Drupal 5.x before 5.11 and 6.x before 6.5 might allow remote authenticated users to bypass intended login access rules and successfully login via unknown vectors.
EPSS
Процентиль: 63%
0.00465
Низкий
6 Medium
CVSS2
Дефекты
CWE-264