CVE-2008-3745 Information
Feb 14, 2021
cve
Description
The Upload module in Drupal 6.x before 6.4 allows remote authenticated users to edit nodes delete files and download unauthorized attachments via unspecified vectors.
Reference
http://drupal.org/node/295053 http://secunia.com/advisories/31825 http://www.securityfocus.com/bid/30689 http://www.vupen.com/english/advisories/2008/2392 https://bugzilla.redhat.com/show_bug.cgi?id=459108 https://exchange.xforce.ibmcloud.com/vulnerabilities/44458 https://www.redhat.com/archives/fedora-package-announce/2008-September/msg00259.html https://www.redhat.com/archives/fedora-package-announce/2008-September/msg00508.html
Share on: