Lucene search

K
prionPRIOn knowledge basePRION:CVE-2013-4445
HistoryDec 07, 2013 - 8:55 p.m.

Design/Logic Flaw

2013-12-0720:55:00
PRIOn knowledge base
www.prio-n.com
2

6.6 Medium

AI Score

Confidence

Low

0.002 Low

EPSS

Percentile

60.9%

The json rendering functionality in the Context module 6.x-2.x before 6.x-3.2 and 7.x-3.x before 7.x-3.0 for Drupal uses Drupal’s token scheme to restrict access to blocks, which makes it easier for remote authenticated users to guess the access token for a block by leveraging the token from a block to which the user has access.

6.6 Medium

AI Score

Confidence

Low

0.002 Low

EPSS

Percentile

60.9%

Related for PRION:CVE-2013-4445