CVE-2017-20001
01.01.2021, 01:15
The AES encryption project 7.x and 8.x for Drupal does not sufficiently prevent attackers from decrypting data, aka SA-CONTRIB-2017-027. NOTE: This project is not covered by Drupal's security advisory policy.Enginsight
Vendor | Product | Version |
---|---|---|
aes_encryption_project | aes_encryption | 7.x-1.4 ≤ 𝑥 ≤ 7.x-1.10 |
aes_encryption_project | aes_encryption | 8.x-2.1 ≤ 𝑥 ≤ 8.x-2.4 |
𝑥
= Vulnerable software versions
Common Weakness Enumeration