PT-2011-1724 · Drupal · Drupal

Publicado

2011-03-23

·

Atualizado

2017-08-17

·

CVE-2010-4775

CVSS v2.0

5.0

Média

VetorAV:N/AC:L/Au:N/C:P/I:N/A:N
Name of the Vulnerable Software and Affected Versions Drupal Relevant Content module versions 5.x before 5.x-1.4 Drupal Relevant Content module versions 6.x before 6.x-1.5
Description The issue is related to the improper implementation of node access logic in the Relevant Content module for Drupal. This allows remote attackers to discover restricted node titles and relationships.
Recommendations For versions 5.x before 5.x-1.4, update to version 5.x-1.4 or later. For versions 6.x before 6.x-1.5, update to version 6.x-1.5 or later.

Correção

RCE

Encontrou algum problema na descrição? Tem algo a acrescentar? Fique à vontade para nos escrever 👾

Enumeração de Fraquezas

Identificadores relacionados

CVE-2010-4775

Produtos afetados

Drupal