VendorsNathan Haugfilefield_sources6.x-1.6
Vulnerabilities

Nathan Haug FileField Sources module for Drupal 6.x-1.6

Ranked by severity, then by exploit likelihood. Click a CVE ID for its full record.

1CVEs
CVE-2013-4502
The FileField Sources module 6.x-1.x before 6.x-1.9 and 7.x-1.x before 7.x-1.9 for Drupal does not properly check file permissions, which allows remote authenticated users to read arbitrary files by attaching a file.
Published 2014-05-13 · Modified
4.0EPSS 0.011