CVE-2008-0275: Medium severity drupal atom module vulnerability
Published Jan 15, 2008
·Updated
The Atom 4.7 before 4.7.x-1.0 and 5.x before 5.x-1.0 module for Drupal does not properly manage permissions for node (1) titles, (2) teasers, and (3) bodies, which might allow remote attackers to gain access to syndicated content.
Affected Software
2 affected components
Drupal Atom Module<=5.0
Drupal Atom Module<=4.7
Event History
Jan 15, 2008
CVE Published
via MITRE·07:00 PM
Data Sourced
via MITRE·07:00 PM
Description
Frequently Asked Questions
1
What is the severity of CVE-2008-0275?
CVE-2008-0275 is classified as a moderate severity vulnerability due to improper permission management.
2
What are the potential impacts of CVE-2008-0275?
CVE-2008-0275 may allow remote attackers to access unauthorized syndicated content.
3
How do I fix CVE-2008-0275?
To fix CVE-2008-0275, upgrade to a later version of the Atom module that is not affected by this vulnerability.
4
Which versions of the Atom module are affected by CVE-2008-0275?
CVE-2008-0275 affects Atom module versions 4.7 before 4.7.x-1.0 and 5.x before 5.x-1.0.
5
Is CVE-2008-0275 specific to certain platforms?
CVE-2008-0275 is specific to the Drupal Atom module used within the Drupal content management system.