4.3
CVSSv2

CVE-2012-4494

Published: 31/10/2012 Updated: 02/11/2012
CVSS v2 Base Score: 4.3 | Impact Score: 2.9 | Exploitability Score: 8.6
VMScore: 383
Vector: AV:N/AC:M/Au:N/C:N/I:P/A:N

Vulnerability Summary

The Shibboleth authentication module 7.x-4.0 for Drupal does not properly check the active status of users, which allows remote blocked users to access bypass intended access restrictions and possibly have other impacts by logging in.

Vulnerable Product Search on Vulmon Subscribe to Product

niif shibb_auth 7.x-4.0