CVE-2012-0827: Low severity drupal vulnerability
The File module in Drupal 7.x before 7.11, when using unspecified field access modules, allows remote authenticated users to read arbitrary private files that are associated with restricted fields via unspecified vectors.
Affected Software
Remediation
Patch Available
Event History
Frequently Asked Questions
What is the severity of CVE-2012-0827?
CVE-2012-0827 has a severity rating that indicates a risk of unauthorized access to private files for authenticated users.
How do I fix CVE-2012-0827?
To fix CVE-2012-0827, upgrade your Drupal installation to version 7.11 or later.
Who is affected by CVE-2012-0827?
Authenticated users in Drupal 7.x versions prior to 7.11 that use unspecified field access modules are affected by CVE-2012-0827.
What types of files are vulnerable in CVE-2012-0827?
CVE-2012-0827 allows access to arbitrary private files associated with restricted fields.
When was CVE-2012-0827 reported?
CVE-2012-0827 was reported prior to the release of Drupal version 7.11, highlighting vulnerabilities in earlier 7.x versions.