The Fast Permissions Administration module 6.x-2.x before 6.x-2.5 and 7.x-2.x before 7.x-2.3 for Drupal does not properly restrict access to the modal content callback, which allows remote attackers to obtain unspecified access to the permissions edit form.
History

No history.

cve-icon MITRE

Status: PUBLISHED

Assigner: redhat

Published: 2013-08-28T15:00:00Z

Updated: 2024-09-16T22:45:55.497Z

Reserved: 2013-02-19T00:00:00Z

Link: CVE-2013-2247

cve-icon Vulnrichment

No data.

cve-icon NVD

Status : Analyzed

Published: 2013-08-28T22:55:05.670

Modified: 2013-10-07T17:45:25.033

Link: CVE-2013-2247

cve-icon Redhat

No data.