5
CVSSv2

CVE-2012-2704

Published: 31/08/2012 Updated: 29/08/2017
CVSS v2 Base Score: 5 | Impact Score: 2.9 | Exploitability Score: 10
VMScore: 445
Vector: AV:N/AC:L/Au:N/C:P/I:N/A:N

Vulnerability Summary

The Advertisement module 6.x-2.x prior to 6.x-2.3 for Drupal does not properly restrict access to debug information, which allows remote malicious users to obtain sensitive site configuration information that is specified by the $conf variable in settings.php.

Vulnerable Product Search on Vulmon Subscribe to Product

john_franklin advertisement 6.x-2.3

john_franklin advertisement 6.x-2.1

john_franklin advertisement 6.x-2.x

john_franklin advertisement 6.x-2.2

john_franklin advertisement 6.x-2.0

john_franklin advertisement 6.x-2.0-rc1