Lucene search

K
cvelistRedhatCVELIST:CVE-2012-1645
HistoryOct 03, 2022 - 4:15 p.m.

CVE-2012-1645

2022-10-0316:15:25
redhat
www.cve.org
cve-2012-1645; drupal; cdn module; remote attackers; php files

6.9 Medium

AI Score

Confidence

Low

0.003 Low

EPSS

Percentile

71.7%

The CDN module 6.x-2.2 and 7.x-2.2 for Drupal, when running in Origin Pull mode with the “Far Future expiration” option enabled, allows remote attackers to read arbitrary PHP files via unspecified vectors, as demonstrated by reading settings.php.

6.9 Medium

AI Score

Confidence

Low

0.003 Low

EPSS

Percentile

71.7%

Related for CVELIST:CVE-2012-1645