6
CVSSv2

CVE-2008-4789

Published: 29/10/2008 Updated: 08/08/2017
CVSS v2 Base Score: 6 | Impact Score: 6.4 | Exploitability Score: 6.8
VMScore: 534
Vector: AV:N/AC:M/Au:S/C:P/I:P/A:P

Vulnerability Summary

The validation functionality in the core upload module in Drupal 6.x prior to 6.5 allows remote authenticated users to bypass intended access restrictions and "attach files to content," related to a "logic error."

Vulnerable Product Search on Vulmon Subscribe to Product

drupal drupal 6.1

drupal drupal 6.2

drupal drupal 6.0

drupal drupal 6.3

drupal drupal