5
CVSSv2

CVE-2015-5512

Published: 18/08/2015 Updated: 28/11/2016
CVSS v2 Base Score: 5 | Impact Score: 2.9 | Exploitability Score: 10
VMScore: 445
Vector: AV:N/AC:L/Au:N/C:P/I:N/A:N

Vulnerability Summary

The me aliases module 6.x-2.x prior to 6.x-2.10 and 7.x-1.x prior to 7.x-1.2 for Drupal allows remote malicious users to access Views using the "me" user argument handler by substituting "me" for a user id in a URL.

Vulnerable Product Search on Vulmon Subscribe to Product

me aliases project me aliases 7.x-1.0

me aliases project me aliases 6.x-2.2

me aliases project me aliases 6.x-2.9

me aliases project me aliases 7.x-1.1

me aliases project me aliases 6.x-2.4

me aliases project me aliases 6.x-2.7

me aliases project me aliases 6.x-2.5

me aliases project me aliases 6.x-2.0

me aliases project me aliases 6.x-2.3

me aliases project me aliases 6.x-2.6

me aliases project me aliases 6.x-2.1

me aliases project me aliases 6.x-2.8