Description
The Entityform Block module 7.x-1.x before 7.x-1.3 for Drupal does not properly check permissions when a form is locked to a role, which allows remote attackers to obtain access to certain entityforms via unspecified vectors.
No analysis available yet.
Remediation
No remediation available yet.
Tracking
Sign in to view the affected projects.
Advisories
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2015-5448 | The Entityform Block module 7.x-1.x before 7.x-1.3 for Drupal does not properly check permissions when a form is locked to a role, which allows remote attackers to obtain access to certain entityforms via unspecified vectors. |
References
History
No history.
Status: PUBLISHED
Assigner: mitre
Published:
Updated: 2024-08-06T06:50:02.258Z
Reserved: 2015-07-10T00:00:00.000Z
Link: CVE-2015-5493
No data.
Status : Deferred
Published: 2015-08-18T17:59:43.520
Modified: 2025-04-12T10:46:40.837
Link: CVE-2015-5493
No data.
OpenCVE Enrichment
No data.
Weaknesses
EUVD