mod_survey 3.0.0 through 3.0.15-pre6 does not check whether a survey exists before creating a subdirectory for it, which allows remote attackers to cause a denial of service (disk consumption and possible crash).
Name | Vendor | Start Version | End Version |
---|---|---|---|
Mod_survey | Mod_survey | 3.0 (including) | 3.0 (including) |
Mod_survey | Mod_survey | 3.0.1 (including) | 3.0.1 (including) |
Mod_survey | Mod_survey | 3.0.2 (including) | 3.0.2 (including) |
Mod_survey | Mod_survey | 3.0.3 (including) | 3.0.3 (including) |
Mod_survey | Mod_survey | 3.0.4 (including) | 3.0.4 (including) |
Mod_survey | Mod_survey | 3.0.5 (including) | 3.0.5 (including) |
Mod_survey | Mod_survey | 3.0.6 (including) | 3.0.6 (including) |
Mod_survey | Mod_survey | 3.0.7 (including) | 3.0.7 (including) |
Mod_survey | Mod_survey | 3.0.8 (including) | 3.0.8 (including) |
Mod_survey | Mod_survey | 3.0.9 (including) | 3.0.9 (including) |
Mod_survey | Mod_survey | 3.0.10 (including) | 3.0.10 (including) |
Mod_survey | Mod_survey | 3.0.11 (including) | 3.0.11 (including) |
Mod_survey | Mod_survey | 3.0.12 (including) | 3.0.12 (including) |
Mod_survey | Mod_survey | 3.0.13 (including) | 3.0.13 (including) |
Mod_survey | Mod_survey | 3.0.14 (including) | 3.0.14 (including) |
Mod_survey | Mod_survey | 3.0.14d (including) | 3.0.14d (including) |
Mod_survey | Mod_survey | 3.0.14e (including) | 3.0.14e (including) |
Mod_survey | Mod_survey | 3.0.15pre1 (including) | 3.0.15pre1 (including) |
Mod_survey | Mod_survey | 3.0.15pre2 (including) | 3.0.15pre2 (including) |
Mod_survey | Mod_survey | 3.0.15pre3 (including) | 3.0.15pre3 (including) |
Mod_survey | Mod_survey | 3.0.15pre4 (including) | 3.0.15pre4 (including) |
Mod_survey | Mod_survey | 3.0.15pre5 (including) | 3.0.15pre5 (including) |
Mod_survey | Mod_survey | 3.0.15pre6 (including) | 3.0.15pre6 (including) |