Beveiligingsadvies

CVE-2012-1591

CVE-kwetsbaarheidsdetails - eXtreme Datacenter Security Operations

Gepubliceerd 2012-10-01 00:00:00
Laatst bijgewerkt 2024-08-06 19:01:02
Toegewezen door redhat
CVSS-score geen score
Status PUBLISHED

Beschrijving

The image module in Drupal 7.x before 7.14 does not properly check permissions when caching derivative image styles of private images, which allows remote attackers to read private image styles.