Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

nvd логотип

CVE-2010-2473

Опубликовано: 07 нояб. 2019
Источник: nvd
CVSS3: 6.5
CVSS2: 3.5
EPSS Низкий

Описание

Drupal 6.x before 6.16 and 5.x before version 5.22 does not properly block users under certain circumstances. A user with an open session that was blocked could maintain their session on the Drupal site despite being blocked.

Уязвимые конфигурации

Конфигурация 1

Одно из

cpe:2.3:a:drupal:drupal:*:*:*:*:*:*:*:*
Версия от 5.0 (включая) до 5.22 (исключая)
cpe:2.3:a:drupal:drupal:*:*:*:*:*:*:*:*
Версия от 6.0 (включая) до 6.16 (исключая)

EPSS

Процентиль: 56%
0.0034
Низкий

6.5 Medium

CVSS3

3.5 Low

CVSS2

Дефекты

CWE-20

Связанные уязвимости

CVSS3: 6.5
ubuntu
больше 5 лет назад

Drupal 6.x before 6.16 and 5.x before version 5.22 does not properly block users under certain circumstances. A user with an open session that was blocked could maintain their session on the Drupal site despite being blocked.

CVSS3: 6.5
debian
больше 5 лет назад

Drupal 6.x before 6.16 and 5.x before version 5.22 does not properly b ...

github
около 3 лет назад

Drupal 6.x before 6.16 and 5.x before version 5.22 does not properly block users under certain circumstances. A user with an open session that was blocked could maintain their session on the Drupal site despite being blocked.

EPSS

Процентиль: 56%
0.0034
Низкий

6.5 Medium

CVSS3

3.5 Low

CVSS2

Дефекты

CWE-20