Unrated severityNVD Advisory· Published Aug 27, 2008· Updated Apr 23, 2026
CVE-2008-3745
CVE-2008-3745
Description
The Upload module in Drupal 6.x before 6.4 allows remote authenticated users to edit nodes, delete files, and download unauthorized attachments via unspecified vectors.
Affected products
5- cpe:2.3:a:drupal:upload_module:*:*:*:*:*:*:*:*
Patches
0No patches discovered yet.
Vulnerability mechanics
AI mechanics synthesis has not run for this CVE yet.
References
8- drupal.org/node/295053nvdPatch
- secunia.com/advisories/31825nvd
- www.securityfocus.com/bid/30689nvd
- www.vupen.com/english/advisories/2008/2392nvd
- bugzilla.redhat.com/show_bug.cginvd
- exchange.xforce.ibmcloud.com/vulnerabilities/44458nvd
- www.redhat.com/archives/fedora-package-announce/2008-September/msg00259.htmlnvd
- www.redhat.com/archives/fedora-package-announce/2008-September/msg00508.htmlnvd
News mentions
0No linked articles in our index yet.