CVE-2009-0382: Medium severity Drupal Internationalization vulnerability
Unspecified vulnerability in Internationalization (i18n) Translation 5.x before 5.x-2.5, a module for Drupal, allows remote attackers with "translate node" permissions to bypass intended access restrictions and read unpublished nodes via unspecified vectors.
Affected Software
Remediation
Recommended actions to resolve this vulnerability, in priority order.
- Upgrade
Upgrade
Internationalization (i18n) Translationto a version that resolves this vulnerability.Fixed in 5.x-2.5
Event History
Frequently Asked Questions
What is the severity of CVE-2009-0382?
CVE-2009-0382 is considered to have a moderate severity due to the potential for unauthorized access to unpublished nodes.
How do I fix CVE-2009-0382?
To fix CVE-2009-0382, upgrade the Internationalization module to version 5.x-2.5 or later.
Who is affected by CVE-2009-0382?
Users of the Internationalization module for Drupal versions 5.x before 5.x-2.5 are affected by CVE-2009-0382.
What types of permissions allow exploitation of CVE-2009-0382?
Remote attackers with 'translate node' permissions can exploit CVE-2009-0382 to bypass access restrictions.
Can CVE-2009-0382 lead to data exposure?
Yes, CVE-2009-0382 can lead to data exposure by allowing unauthorized users to read unpublished nodes.