Drupal Core Access Bypass and Arbitrary PHP Code Execution Vulnerabilities
|
Bugtraq ID:
|
56993
|
|
Class:
|
Design Error
|
|
CVE:
|
CVE-2012-5651
CVE-2012-5652
CVE-2012-5653
CVE-2012-5655
|
|
Remote:
|
Yes
|
|
Local:
|
No
|
|
Published:
|
Dec 19 2012 12:00AM
|
|
Updated:
|
Apr 09 2013 01:38PM
|
|
Credit:
|
Derek Wright, Simon Rycroft, Damien Tournoud and Amit Asaravala
|
|
Vulnerable:
|
Red Hat Fedora 17
Red Hat Fedora 16
Drupal Drupal 7.14
Drupal Drupal 7.13
Drupal Drupal 7.12
Drupal Drupal 7.11
Drupal Drupal 7.10
Drupal Drupal 7.1
Drupal Drupal 7.0
Drupal Drupal 6.23
Drupal Drupal 6.22
Drupal Drupal 6.22
Drupal Drupal 6.2
Drupal Drupal 6.18
Drupal Drupal 6.17
Drupal Drupal 6.16
Drupal Drupal 6.15
Drupal Drupal 6.14
Drupal Drupal 6.13
Drupal Drupal 6.12
Drupal Drupal 6.11
Drupal Drupal 6.10
Drupal Drupal 6.1
Drupal Drupal 6.0 Dev
|
|
|
|
Not Vulnerable:
|
|
|