5.8
CVSSv2

CVE-2008-1729

Published: 11/04/2008 Updated: 19/04/2021
CVSS v2 Base Score: 5.8 | Impact Score: 4.9 | Exploitability Score: 8.6
VMScore: 516
Vector: AV:N/AC:M/Au:N/C:P/I:P/A:N

Vulnerability Summary

The menu system in Drupal 6 prior to 6.2 has incorrect menu settings, which allows remote malicious users to (1) edit the profile pages of arbitrary users, and obtain sensitive information from (2) tracker and (3) blog pages, related to a missing check for the "access content" permission; and (4) allows remote authenticated users, with administration page view access, to edit content types.

Vulnerability Trend

Vulnerable Product Search on Vulmon Subscribe to Product

drupal drupal