CVE-2013-1907: Medium severity acquia commons vulnerability
Published Jul 16, 2013
·Updated
The Commons Group module before 7.x-3.1 for Drupal, as used in the Commons module before 7.x-3.1, does not properly restrict access to groups, which allows remote attackers to post arbitrary content to groups via unspecified vectors.
Affected Software
5 affected components
Acquia Commons<=7.x-3.0
Acquia Commons=_group7.x-3.x-dev
Acquia Commons=7.x-3.x-dev
Acquia Commons Group<=7.x-3.0
Drupal Drupal
Event History
Jul 16, 2013
CVE Published
via MITRE·06:00 PM
Data Sourced
via MITRE·06:00 PM
Description
Frequently Asked Questions
1
What is the severity of CVE-2013-1907?
CVE-2013-1907 has been classified as a moderate severity vulnerability.
2
How do I fix CVE-2013-1907?
To fix CVE-2013-1907, upgrade the Commons Group module to version 7.x-3.1 or newer.
3
What are the potential impacts of CVE-2013-1907?
CVE-2013-1907 may allow remote attackers to post arbitrary content to groups, leading to potential misuse of group resources.
4
Which versions of the Commons Group module are affected by CVE-2013-1907?
CVE-2013-1907 affects Commons Group module versions prior to 7.x-3.1.
5
Can CVE-2013-1907 affect all Drupal websites?
No, CVE-2013-1907 specifically impacts those using the Commons Group module prior to version 7.x-3.1.