Drupal Core Access Bypass and Arbitrary PHP Code Execution Vulnerabilities

Bugtraq ID: 56993
Class: Design Error
CVE: CVE-2012-5651
CVE-2012-5652
CVE-2012-5653
CVE-2012-5655
Remote: Yes
Local: No
Published: Dec 19 2012 12:00AM
Updated: Nov 26 2013 12:16AM
Credit: Derek Wright, Simon Rycroft, Damien Tournoud and Amit Asaravala
Vulnerable: Red Hat Fedora 17
Red Hat Fedora 16
Drupal Drupal 7.14
Drupal Drupal 7.13
Drupal Drupal 7.12
Drupal Drupal 7.11
Drupal Drupal 7.10
Drupal Drupal 7.1
Drupal Drupal 7.0
Drupal Drupal 6.23
Drupal Drupal 6.22
Drupal Drupal 6.22
Drupal Drupal 6.2
Drupal Drupal 6.18
Drupal Drupal 6.17
Drupal Drupal 6.16
Drupal Drupal 6.15
Drupal Drupal 6.14
Drupal Drupal 6.13
Drupal Drupal 6.12
Drupal Drupal 6.11
Drupal Drupal 6.10
Drupal Drupal 6.1
Drupal Drupal 6.0 Dev
Debian Linux 6.0 sparc
Debian Linux 6.0 s/390
Debian Linux 6.0 powerpc
Debian Linux 6.0 mips
Debian Linux 6.0 ia-64
Debian Linux 6.0 ia-32
Debian Linux 6.0 arm
Debian Linux 6.0 amd64
Not Vulnerable:


 

Privacy Statement
Copyright 2010, SecurityFocus