CVE-2013-4500 - CERT CVE
ID CVE-2013-4500
Sažetak The Quiz module 6.x-4.x before 6.x-4.5 for Drupal allows remote authenticated users with the "view any quiz results" or "view results for own quiz" permission to delete arbitrary results via the delete option.
Reference
CVSS
Base: 4.9
Impact: 4.9
Exploitability:6.8
Pristup
VektorSloženostAutentikacija
NETWORK MEDIUM SINGLE
Impact
PovjerljivostCjelovitostDostupnost
NONE PARTIAL PARTIAL
CVSS vektor AV:N/AC:M/Au:S/C:N/I:P/A:P
Zadnje važnije ažuriranje 14-05-2014 - 16:36
Objavljeno 13-05-2014 - 15:55