6
CVSSv2

CVE-2008-4790

Published: 29/10/2008 Updated: 08/08/2017
CVSS v2 Base Score: 6 | Impact Score: 6.4 | Exploitability Score: 6.8
VMScore: 534
Vector: AV:N/AC:M/Au:S/C:P/I:P/A:P

Vulnerability Summary

The core upload module in Drupal 5.x prior to 5.11 allows remote authenticated users to bypass intended access restrictions and read "files attached to content" via unknown vectors.

Vulnerable Product Search on Vulmon Subscribe to Product

drupal drupal 5.5

drupal drupal 5.4

drupal drupal 5.0

drupal drupal 5.3

drupal drupal 5.2

drupal drupal 5.9

drupal drupal 5.8

drupal drupal 5.1

drupal drupal 5.7

drupal drupal 5.6

drupal drupal