7.5
CVSSv2

CVE-2009-1507

Published: 01/05/2009 Updated: 13/05/2009
CVSS v2 Base Score: 7.5 | Impact Score: 6.4 | Exploitability Score: 10
VMScore: 668
Vector: AV:N/AC:L/Au:N/C:P/I:P/A:P

Vulnerability Summary

The Node Access User Reference module 5.x prior to 5.x-2.0-beta4 and 6.x prior to 6.x-2.0-beta6, a module for Drupal, interprets an empty CCK user reference as a reference to the anonymous user, which might allow remote malicious users to bypass intended access restrictions to read or modify a node.

Vulnerability Trend

Vulnerable Product Search on Vulmon Subscribe to Product

drupal nodeaccess_userreference 5.x-1.3

drupal nodeaccess_userreference 5.x-1.0

drupal nodeaccess_userreference 6.x-2.0

drupal nodeaccess_userreference 6.x-1.1

drupal nodeaccess_userreference 6.x-1.0

drupal nodeaccess_userreference 5.x-1.1

drupal nodeaccess_userreference 5.x-1.2

drupal nodeaccess_userreference 6.x-1.4

drupal nodeaccess_userreference 6.x-1.2

drupal nodeaccess_userreference 5.x-1.4

drupal nodeaccess_userreference 5.x-2.0

drupal nodeaccess_userreference 6.x-1.7

drupal nodeaccess_userreference 6.x-1.6

drupal nodeaccess_userreference 6.x-1.5