Описание
The OpenID module in Drupal 7.x before 7.16 allows remote OpenID servers to read arbitrary files via a crafted DOCTYPE declaration in an XRDS file.
Релиз | Статус | Примечание |
---|---|---|
devel | not-affected | 7.14-1.1 |
esm-apps/xenial | not-affected | 7.14-1.1 |
esm-infra-legacy/trusty | not-affected | 7.14-1.1 |
hardy | DNE | |
lucid | DNE | |
oneiric | DNE | |
precise | ignored | end of life |
precise/esm | DNE | precise was needed |
quantal | ignored | end of life |
raring | not-affected | 7.14-1.1 |
Показывать по
10
EPSS
Процентиль: 98%
0.56287
Средний
5 Medium
CVSS2
Связанные уязвимости
nvd
больше 12 лет назад
The OpenID module in Drupal 7.x before 7.16 allows remote OpenID servers to read arbitrary files via a crafted DOCTYPE declaration in an XRDS file.
debian
больше 12 лет назад
The OpenID module in Drupal 7.x before 7.16 allows remote OpenID serve ...
github
около 3 лет назад
The OpenID module in Drupal 7.x before 7.16 allows remote OpenID servers to read arbitrary files via a crafted DOCTYPE declaration in an XRDS file.
EPSS
Процентиль: 98%
0.56287
Средний
5 Medium
CVSS2