The Administration Views module 7.x-1.x before 7.x-1.5 for Drupal checks access permissions based on the router path from the view instead of the display property, which allows remote attackers to obtain sensitive information via vectors related to the access handler.
Metrics
Affected Vendors & Products
References
History
No history.
MITRE
Status: PUBLISHED
Assigner: mitre
Published: 2015-09-17T16:00:00
Updated: 2024-08-06T07:43:45.815Z
Reserved: 2015-09-17T00:00:00
Link: CVE-2015-7226
Vulnrichment
No data.
NVD
Status : Modified
Published: 2015-09-17T16:59:05.087
Modified: 2024-11-21T02:36:23.063
Link: CVE-2015-7226
Redhat
No data.