CVE-2016-6212
5.3MEDIUM
Summary
The Views module 7.x-3.x before 7.x-3.14 in Drupal 7.x and the Views module in Drupal 8.x before 8.1.3 might allow remote authenticated users to bypass intended access restrictions and obtain sensitive Statistics information via unspecified vectors.
Refferences
http://www.securityfocus.com/bid/91230
vdb-entryx_refsource_BID
https://www.drupal.org/node/2749333
x_refsource_CONFIRM
http://www.openwall.com/lists/oss-security/2016/07/13/4
mailing-listx_refsource_MLIST
https://www.drupal.org/SA-CORE-2016-002
x_refsource_CONFIRM
http://www.openwall.com/lists/oss-security/2016/07/13/7
mailing-listx_refsource_MLIST
CVSS V3.1
Score:
5.3
Severity:
MEDIUM
Confidentiality:
Low
Integrity:
None
Availability:
None
Attack Vector:
Network
Attack Complexity:
Low
Privileges Required:
None
User Interaction:
None
Scope:
Unchanged
Timeline
Vulnerability published
Vulnerability Reserved
Collectors
NVD DatabaseMitre Database