Lucene search

K
veracodeVeracode Vulnerability DatabaseVERACODE:4287
HistoryMay 24, 2017 - 6:52 a.m.

Access Bypass

2017-05-2406:52:26
Veracode Vulnerability Database
sca.analysiscenter.veracode.com
6

EPSS

0.003

Percentile

68.8%

drupal core is vulenrable to access bypass. If a website is running RESTful Web Services and allows PATCH requests, an authenticated user can bypass access restrictions.

CPENameOperatorVersion
drupal/coreeq8.3.0
drupal/corele8.2.7