The Services module 7.x-3.x before 7.x-3.12 for Drupal allows remote attackers to bypass the field_access restriction and obtain sensitive private field information via unspecified vectors.
Name | Vendor | Start Version | End Version |
---|---|---|---|
Services | Services_project | 7.x-3.0 (including) | 7.x-3.0 (including) |
Services | Services_project | 7.x-3.1 (including) | 7.x-3.1 (including) |
Services | Services_project | 7.x-3.2 (including) | 7.x-3.2 (including) |
Services | Services_project | 7.x-3.3 (including) | 7.x-3.3 (including) |
Services | Services_project | 7.x-3.4 (including) | 7.x-3.4 (including) |
Services | Services_project | 7.x-3.5 (including) | 7.x-3.5 (including) |
Services | Services_project | 7.x-3.6 (including) | 7.x-3.6 (including) |
Services | Services_project | 7.x-3.7 (including) | 7.x-3.7 (including) |
Services | Services_project | 7.x-3.10 (including) | 7.x-3.10 (including) |
Services | Services_project | 7.x-3.11 (including) | 7.x-3.11 (including) |