Lucene search

K
prionPRIOn knowledge basePRION:CVE-2009-3781
HistoryOct 26, 2009 - 5:30 p.m.

Design/Logic Flaw

2009-10-2617:30:00
PRIOn knowledge base
www.prio-n.com
5

7.2 High

AI Score

Confidence

Low

0.013 Low

EPSS

Percentile

86.1%

The filefield_file_download function in FileField 6.x-3.1, a module for Drupal, does not properly check node-access permissions for Drupal core private files, which allows remote attackers to access unauthorized files via unspecified vectors.

CPENameOperatorVersion
filefieldeq6.120.31

7.2 High

AI Score

Confidence

Low

0.013 Low

EPSS

Percentile

86.1%

Related for PRION:CVE-2009-3781