CVE-2013-7067
19.12.2013, 04:24
The OG Features module 6.x-1.x before 6.x-1.4 for Drupal does not properly override pages that have an access callback set to false, which allows remote attackers to bypass intended access restrictions via a request.Enginsight
Vendor | Product | Version |
---|---|---|
mike_stefanello | og_features | 6.x-1.0:x |
mike_stefanello | og_features | 6.x-1.0:x |
mike_stefanello | og_features | 6.x-1.0:x |
mike_stefanello | og_features | 6.x-1.0:x |
mike_stefanello | og_features | 6.x-1.0:x |
mike_stefanello | og_features | 6.x-1.1:x |
mike_stefanello | og_features | 6.x-1.2:x |
mike_stefanello | og_features | 6.x-1.3:x |
mike_stefanello | og_features | 6.x-1.x:x |
𝑥
= Vulnerable software versions

Ubuntu Releases
Ubuntu Product | |||||||||||||||||||||||||||
---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|
drupal6 |
| ||||||||||||||||||||||||||
drupal7 |
|
Common Weakness Enumeration
References