Impact
The vulnerability exists within the Drupal Screenshot module and affects all versions indicated as "*. *". The official advisory does not disclose the flaw type or its precise impact. Based on the module’s role in processing image files, it is inferred that the issue could involve input validation weaknesses, but that conclusion is not confirmed by the advisory. Consequently, the potential consequences of exploitation cannot be confidently defined from the data supplied.
Affected Systems
All installations of the Drupal Screenshot module are flagged by the advisory. The version list using "*. *" indicates no explicit exclusions, implying that any deployment of the module, regardless of release number, might be susceptible.
Risk and Exploitability
The advisory assigns a CVSS score of 7.3, indicating a medium to high severity. EPSS is not available and KEV is not listed in the CISA catalog. Because exploit metrics or public exploitation evidence are not documented, the exact likelihood of exploitation remains uncertain, though the score suggests significant potential impact.
OpenCVE Enrichment