PT-2009-4686 · Drupal · Views Bulk Operations

Published

2009-06-27

·

Updated

2017-08-17

·

CVE-2009-2237

CVSS v2.0

7.5

High

VectorAV:N/AC:L/Au:N/C:P/I:P/A:P
Name of the Vulnerable Software and Affected Versions Views Bulk Operations versions 5.x-1.x before 5.x-1.4 Views Bulk Operations versions 6.x-1.x before 6.x-1.7
Description The issue allows remote attackers to bypass intended access restrictions and modify nodes or classes of nodes via unknown vectors, probably related to registered procedures, also known as actions.
Recommendations For Views Bulk Operations versions 5.x-1.x before 5.x-1.4, update to version 5.x-1.4 or later. For Views Bulk Operations versions 6.x-1.x before 6.x-1.7, update to version 6.x-1.7 or later.

Fix

Found an issue in the description? Have something to add? Feel free to write us 👾

Related Identifiers

CVE-2009-2237

Affected Products

Views Bulk Operations