Security Advisory

CVE-2008-2271

CVE vulnerability detail - eXtreme Datacenter Security Operations

Published 2008-05-16 06:54:00
Last updated 2024-08-07 08:58:01
Assigner mitre
CVSS score not scored
State PUBLISHED

Description

The Site Documentation Drupal module 5.x before 5.x-1.8 and 6.x before 6.x-1.1 allows remote authenticated users to gain privileges of other users by leveraging the "access content" permission to list tables and obtain session IDs from the database.