CVE-2013-7067

Publication date

2013-12-19 02:00:00

Family

mitre

State

PUBLISHED

Description

The OG Features module 6.x-1.x before 6.x-1.4 for Drupal does not properly override pages that have an access callback set to false, which allows remote attackers to bypass intended access restrictions via a request.