Логотип exploitDog
bind:CVE-2016-3165
Консоль
Логотип exploitDog

exploitDog

bind:CVE-2016-3165

Количество 4

Количество 4

ubuntu логотип

CVE-2016-3165

около 9 лет назад

The Form API in Drupal 6.x before 6.38 ignores access restrictions on submit buttons, which might allow remote attackers to bypass intended access restrictions by leveraging permission to submit a form with a button that has "#access" set to FALSE in the server-side form definition.

CVSS3: 7.5
EPSS: Низкий
nvd логотип

CVE-2016-3165

около 9 лет назад

The Form API in Drupal 6.x before 6.38 ignores access restrictions on submit buttons, which might allow remote attackers to bypass intended access restrictions by leveraging permission to submit a form with a button that has "#access" set to FALSE in the server-side form definition.

CVSS3: 7.5
EPSS: Низкий
debian логотип

CVE-2016-3165

около 9 лет назад

The Form API in Drupal 6.x before 6.38 ignores access restrictions on ...

CVSS3: 7.5
EPSS: Низкий
github логотип

GHSA-4gh5-3hqj-x3pj

около 3 лет назад

Drupal Form API ignores access restrictions on submit buttons

CVSS3: 7.5
EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
ubuntu логотип
CVE-2016-3165

The Form API in Drupal 6.x before 6.38 ignores access restrictions on submit buttons, which might allow remote attackers to bypass intended access restrictions by leveraging permission to submit a form with a button that has "#access" set to FALSE in the server-side form definition.

CVSS3: 7.5
1%
Низкий
около 9 лет назад
nvd логотип
CVE-2016-3165

The Form API in Drupal 6.x before 6.38 ignores access restrictions on submit buttons, which might allow remote attackers to bypass intended access restrictions by leveraging permission to submit a form with a button that has "#access" set to FALSE in the server-side form definition.

CVSS3: 7.5
1%
Низкий
около 9 лет назад
debian логотип
CVE-2016-3165

The Form API in Drupal 6.x before 6.38 ignores access restrictions on ...

CVSS3: 7.5
1%
Низкий
около 9 лет назад
github логотип
GHSA-4gh5-3hqj-x3pj

Drupal Form API ignores access restrictions on submit buttons

CVSS3: 7.5
1%
Низкий
около 3 лет назад

Уязвимостей на страницу