First published: Fri Nov 30 2012(Updated: )
Unspecified vulnerability in the Drag & Drop Gallery module 6.x for Drupal allows remote attackers to bypass access restrictions via unknown attack vectors.
Credit: secalert@redhat.com
Affected Software | Affected Version | How to fix |
---|---|---|
David Alkire Drag & Drop Gallery | =6.x-1.5 | |
Drupal |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2012-4477 is considered a medium severity vulnerability that allows unauthorized access.
To fix CVE-2012-4477, update the Drag & Drop Gallery module to version 6.x-1.6 or later.
CVE-2012-4477 specifically affects users of the Drag & Drop Gallery module version 6.x-1.5 in Drupal.
CVE-2012-4477 utilizes unspecified attack vectors to bypass access restrictions.
No, the core Drupal software is not affected, only the Drag & Drop Gallery module version 6.x-1.5.