CVE-2014-5170
29.03.2018, 18:29
The Storage API module 7.x before 7.x-1.6 for Drupal might allow remote attackers to execute arbitrary code by leveraging failure to update .htaccess file contents after SA-CORE-2013-003.Enginsight
Vendor | Product | Version |
---|---|---|
drupal | storage_api | 7.x-1.0:x |
drupal | storage_api | 7.x-1.1:x |
drupal | storage_api | 7.x-1.2:x |
drupal | storage_api | 7.x-1.3:x |
drupal | storage_api | 7.x-1.4:x |
drupal | storage_api | 7.x-1.5:x |
drupal | storage_api | 7.x-1.x-dev:x |
𝑥
= Vulnerable software versions
Common Weakness Enumeration
References