CVE-2013-2123

The Node access user reference module 6.x-3.x before 6.x-3.5 and 7.x-3.x before 7.x-3.10 for Drupal does not properly restrict access to content containing a user reference field when the author update/delete grants are enabled and the author's user account is deleted, which allows remote attackers to modify the content via unspecified vectors.
ProviderTypeBase ScoreAtk. VectorAtk. ComplexityPriv. RequiredVector
NISTNIST
5.8 UNKNOWN
NETWORK
MEDIUM
AV:N/AC:M/Au:N/C:N/I:P/A:P
redhatCNA
---
---
CVEADP
---
---
Base Score
CVSS 3.x
EPSS Score
Percentile: 66%
VendorProductVersion
node_access_user_reference_projectnodeaccess_userreference_module
6.x-3.0:x
node_access_user_reference_projectnodeaccess_userreference_module
6.x-3.0:x
node_access_user_reference_projectnodeaccess_userreference_module
6.x-3.0:x
node_access_user_reference_projectnodeaccess_userreference_module
6.x-3.0:x
node_access_user_reference_projectnodeaccess_userreference_module
6.x-3.0:x
node_access_user_reference_projectnodeaccess_userreference_module
6.x-3.0:x
node_access_user_reference_projectnodeaccess_userreference_module
6.x-3.0:x
node_access_user_reference_projectnodeaccess_userreference_module
6.x-3.1:x
node_access_user_reference_projectnodeaccess_userreference_module
6.x-3.2:x
node_access_user_reference_projectnodeaccess_userreference_module
6.x-3.3:x
node_access_user_reference_projectnodeaccess_userreference_module
6.x-3.4:x
node_access_user_reference_projectnodeaccess_userreference_module
6.x-3.x:x
node_access_user_reference_projectnodeaccess_userreference_module
7.x-3.0:x
node_access_user_reference_projectnodeaccess_userreference_module
7.x-3.0:x
node_access_user_reference_projectnodeaccess_userreference_module
7.x-3.0:x
node_access_user_reference_projectnodeaccess_userreference_module
7.x-3.0:x
node_access_user_reference_projectnodeaccess_userreference_module
7.x-3.0:x
node_access_user_reference_projectnodeaccess_userreference_module
7.x-3.0:x
node_access_user_reference_projectnodeaccess_userreference_module
7.x-3.1:x
node_access_user_reference_projectnodeaccess_userreference_module
7.x-3.2:x
node_access_user_reference_projectnodeaccess_userreference_module
7.x-3.3:x
node_access_user_reference_projectnodeaccess_userreference_module
7.x-3.4:x
node_access_user_reference_projectnodeaccess_userreference_module
7.x-3.5:x
node_access_user_reference_projectnodeaccess_userreference_module
7.x-3.6:x
node_access_user_reference_projectnodeaccess_userreference_module
7.x-3.7:x
node_access_user_reference_projectnodeaccess_userreference_module
7.x-3.8:x
node_access_user_reference_projectnodeaccess_userreference_module
7.x-3.9:x
node_access_user_reference_projectnodeaccess_userreference_module
7.x-3.x:x
𝑥
= Vulnerable software versions
Common Weakness Enumeration