Lucene search

K
prionPRIOn knowledge basePRION:CVE-2015-8602
HistoryDec 17, 2015 - 7:59 p.m.

Code injection

2015-12-1719:59:00
PRIOn knowledge base
www.prio-n.com
1

6.5 Medium

AI Score

Confidence

Low

0.001 Low

EPSS

Percentile

46.5%

The Token Insert Entity module 7.x-1.x before 7.x-1.1 for Drupal does not properly check permissions, which allows remote authenticated users with certain permissions to bypass intended access restrictions and possibly obtain sensitive information by inserting a token, which embeds a rendered entity in the main node.

CPENameOperatorVersion
token_insert_entityeq7.120.10

6.5 Medium

AI Score

Confidence

Low

0.001 Low

EPSS

Percentile

46.5%

Related for PRION:CVE-2015-8602