CVE Vulnerabilities

CVE-2013-2247

Published: Aug 28, 2013 | Modified: Apr 11, 2025
CVSS 3.x
N/A
Source:
NVD
CVSS 2.x
7.5 HIGH
AV:N/AC:L/Au:N/C:P/I:P/A:P
RedHat/V2
RedHat/V3
Ubuntu
root.io logo minimus.io logo echo.ai logo

The Fast Permissions Administration module 6.x-2.x before 6.x-2.5 and 7.x-2.x before 7.x-2.3 for Drupal does not properly restrict access to the modal content callback, which allows remote attackers to obtain unspecified access to the permissions edit form.

Affected Software

NameVendorStart VersionEnd Version
Fast_permission_administrationFast_permissions_administration_project6.x-2.0 (including)6.x-2.0 (including)
Fast_permission_administrationFast_permissions_administration_project6.x-2.1 (including)6.x-2.1 (including)
Fast_permission_administrationFast_permissions_administration_project6.x-2.2 (including)6.x-2.2 (including)
Fast_permission_administrationFast_permissions_administration_project6.x-2.3 (including)6.x-2.3 (including)
Fast_permission_administrationFast_permissions_administration_project6.x-2.4 (including)6.x-2.4 (including)
Fast_permission_administrationFast_permissions_administration_project6.x-2.x-dev (including)6.x-2.x-dev (including)
Fast_permission_administrationFast_permissions_administration_project7.x-2.0 (including)7.x-2.0 (including)
Fast_permission_administrationFast_permissions_administration_project7.x-2.1 (including)7.x-2.1 (including)
Fast_permission_administrationFast_permissions_administration_project7.x-2.2 (including)7.x-2.2 (including)
Fast_permission_administrationFast_permissions_administration_project7.x-2.x-dev (including)7.x-2.x-dev (including)

References