CVE-2015-3379: Medium severity drupal views vulnerability
The Views module before 6.x-2.18, 6.x-3.x before 6.x-3.2, and 7.x-3.x before 7.x-3.10 for Drupal does not properly restrict access to the default views configurations, which allows remote authenticated users to obtain sensitive information via unspecified vectors.
Affected Software
Remediation
Patch Available
Patch Available
Patch Available
Patch Available
Event History
Frequently Asked Questions
What is the severity of CVE-2015-3379?
CVE-2015-3379 is classified as a medium severity vulnerability due to the exposure of sensitive information to remote authenticated users.
How do I fix CVE-2015-3379?
To fix CVE-2015-3379, update the Views module to version 6.x-2.18, 6.x-3.2, or 7.x-3.10 or later.
What does CVE-2015-3379 affect?
CVE-2015-3379 affects the Views module for Drupal versions prior to 6.x-2.18 and 7.x-3.10.
Who is affected by CVE-2015-3379?
Remote authenticated users of Drupal sites running vulnerable versions of the Views module are affected by CVE-2015-3379.
What are the potential risks of CVE-2015-3379?
The potential risks of CVE-2015-3379 include unauthorized access to sensitive information through the default views configurations.