PT-2025-28756 · Unknown · Config Pages Viewer

Drdam

+4

·

Published

2025-07-08

·

Updated

2025-09-04

·

CVE-2025-7031

CVSS v3.1

5.3

Medium

VectorAV:N/AC:L/PR:N/UI:N/S:U/C:L/I:N/A:N
Name of the Vulnerable Software and Affected Versions: Config Pages Viewer versions 0.0.0 through 1.0.4
Description: The issue is related to missing authentication for critical functions in Config Pages Viewer, which can be exploited due to incorrectly configured access control security levels.
Recommendations: For versions 0.0.0 through 1.0.4, update to a version that includes the fix for this issue to ensure proper authentication for critical functions and correct access control security levels.

Fix

Missing Authentication

Weakness Enumeration

Related Identifiers

CVE-2025-7031
DRUPAL-CONTRIB-2025-086

Affected Products

Config Pages Viewer