CVE-2008-3000

The Aggregation module 5.x before 5.x-4.4 for Drupal, when node access modules are used, does not properly implement access control, which allows remote attackers to bypass intended restrictions.
ProviderTypeBase ScoreAtk. VectorAtk. ComplexityPriv. RequiredVector
NISTPrimary
6.8 UNKNOWN
NETWORK
MEDIUM
AV:N/AC:M/Au:N/C:P/I:P/A:P
Base Score
CVSS 3.x
EPSS Score
Percentile: Unknown
Affected Products (NVD)
VendorProductVersion
drupalaggregation_module
3.0
drupalaggregation_module
3.1
drupalaggregation_module
3.2
drupalaggregation_module
4.0
drupalaggregation_module
4.1
drupalaggregation_module
4.2
drupalaggregation_module
4.3
𝑥
= Vulnerable software versions
Common Weakness Enumeration