Lucene search

K
cvelistRedhatCVELIST:CVE-2012-4487
HistoryNov 02, 2012 - 3:00 p.m.

CVE-2012-4487

2012-11-0215:00:00
redhat
www.cve.org
1
drupal
subuser module
remote authenticated users
role change

AI Score

6.3

Confidence

Low

EPSS

0.001

Percentile

49.1%

The Subuser module before 6.x-1.8 for Drupal does not properly check β€œswitch subuser” permissions, which allows remote authenticated parent users to change their role by switching to a subuser they created.

AI Score

6.3

Confidence

Low

EPSS

0.001

Percentile

49.1%

Related for CVELIST:CVE-2012-4487