CVE-2017-6377
16.03.2017, 14:59
When adding a private file via the editor in Drupal 8.2.x before 8.2.7, the editor will not correctly check access for the file being attached, resulting in an access bypass.Enginsight
Vendor | Product | Version |
---|---|---|
drupal | drupal | 8.2.0 |
drupal | drupal | 8.2.0:beta1 |
drupal | drupal | 8.2.0:beta2 |
drupal | drupal | 8.2.0:beta3 |
drupal | drupal | 8.2.0:rc1 |
drupal | drupal | 8.2.0:rc2 |
drupal | drupal | 8.2.1 |
drupal | drupal | 8.2.2 |
drupal | drupal | 8.2.3 |
drupal | drupal | 8.2.4 |
drupal | drupal | 8.2.5 |
drupal | drupal | 8.2.6 |
𝑥
= Vulnerable software versions

Ubuntu Releases