CVE-2012-4553: Medium severity Drupal Drupal vulnerability
Drupal 7.x before 7.16 allows remote attackers to obtain sensitive information and possibly re-install Drupal and execute arbitrary PHP code via an external database server, related to "transient conditions."
Affected Software
Remediation
Patch Available
Patch Available
Patch Available
Event History
Frequently Asked Questions
What is the severity of CVE-2012-4553?
CVE-2012-4553 has a moderate severity level, allowing attackers to potentially access sensitive information and execute arbitrary PHP code.
How do I fix CVE-2012-4553?
To fix CVE-2012-4553, upgrade your Drupal installation to version 7.16 or later.
What versions of Drupal are affected by CVE-2012-4553?
CVE-2012-4553 affects all versions of Drupal 7.x before 7.16, including various alpha, beta, and release candidate versions.
What kind of attack does CVE-2012-4553 allow?
CVE-2012-4553 allows remote attackers to obtain sensitive information and possibly re-install Drupal, executing arbitrary PHP code.
Is my website vulnerable to CVE-2012-4553 if I use Drupal 7.x?
If you are using any version of Drupal 7.x prior to 7.16, your website is vulnerable to CVE-2012-4553.