TROYANOSYVIRUS
Zuruck zu CVEs

CVE-2015-5515

N/A

Beschreibung

The Views Bulk Operations (VBO) module 6.x-1.x and 7.x-3.x before 7.x-3.3 for Drupal, when the bulk operation for changing Roles is enabled, allows remote authenticated users to edit user accounts and add arbitrary roles to the accounts by leveraging access to a user account listing view with VBO enabled.

CVE Details

CVSS v3.1 BewertungN/A
Veroffentlicht8/18/2015
Zuletzt geandert4/12/2025
Quellenvd
Honeypot-Sichtungen0

Betroffene Produkte

views_bulk_operations_project:views_bulk_operations

Schwachen (CWE)

CWE-264

Referenzen

IOC Korrelationen

Keine Korrelationen erfasst

This product uses data from the NVD API but is not endorsed or certified by the NVD.