CVE Vulnerabilities

CVE-2015-4394

Published: Jun 15, 2015 | Modified: Jun 09, 2016
CVSS 3.x
N/A
Source:
NVD
CVSS 2.x
5 MEDIUM
AV:N/AC:L/Au:N/C:P/I:N/A:N
RedHat/V2
RedHat/V3
Ubuntu

The Services module 7.x-3.x before 7.x-3.12 for Drupal allows remote attackers to bypass the field_access restriction and obtain sensitive private field information via unspecified vectors.

Affected Software

Name Vendor Start Version End Version
Services Services_project 7.x-3.0 (including) 7.x-3.0 (including)
Services Services_project 7.x-3.1 (including) 7.x-3.1 (including)
Services Services_project 7.x-3.2 (including) 7.x-3.2 (including)
Services Services_project 7.x-3.3 (including) 7.x-3.3 (including)
Services Services_project 7.x-3.4 (including) 7.x-3.4 (including)
Services Services_project 7.x-3.5 (including) 7.x-3.5 (including)
Services Services_project 7.x-3.6 (including) 7.x-3.6 (including)
Services Services_project 7.x-3.7 (including) 7.x-3.7 (including)
Services Services_project 7.x-3.10 (including) 7.x-3.10 (including)
Services Services_project 7.x-3.11 (including) 7.x-3.11 (including)

References