Beveiligingsadvies

CVE-2012-2704

CVE-kwetsbaarheidsdetails - eXtreme Datacenter Security Operations

Gepubliceerd 2012-08-31 20:00:00
Laatst bijgewerkt 2024-08-06 19:42:31
Toegewezen door redhat
CVSS-score geen score
Status PUBLISHED

Beschrijving

The Advertisement module 6.x-2.x before 6.x-2.3 for Drupal does not properly restrict access to debug information, which allows remote attackers to obtain sensitive site configuration information that is specified by the $conf variable in settings.php.