Critical severity9.8NVD Advisory· Published Jan 30, 2020· Updated Jun 16, 2026
CVE-2013-2198
CVE-2013-2198
Description
The Login Security module 6.x-1.x before 6.x-1.3 and 7.x-1.x before 7.x-1.3 for Drupal allows attackers to bypass intended restrictions via a crafted username.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
7- Range: 6.x-1.x before 6.x-1.3, 7.x-1.x before 7.x-1.3
- Login Security/Login Securityv5Range: 6.x-1.x before 6.x-1.3
cpe:2.3:a:login_security_project:login_security:*:*:*:*:*:drupal:*:*+ 4 more
- cpe:2.3:a:login_security_project:login_security:*:*:*:*:*:drupal:*:*range: >=6.x-1.0,<=6.x-1.3
- cpe:2.3:a:login_security_project:login_security:6.x-1.0:beta1:*:*:*:drupal:*:*
- cpe:2.3:a:login_security_project:login_security:6.x-1.0:rc1:*:*:*:drupal:*:*
- cpe:2.3:a:login_security_project:login_security:6.x-1.x:dev:*:*:*:drupal:*:*
- cpe:2.3:a:login_security_project:login_security:7.x-1.x:dev:*:*:*:drupal:*:*
Patches
Vulnerability mechanics
References
4- www.openwall.com/lists/oss-security/2013/06/20/3nvdMailing ListThird Party Advisory
- drupal.org/node/2023503nvdThird Party Advisory
- drupal.org/node/2023507nvdThird Party Advisory
- drupal.org/node/2023585nvdThird Party Advisory
News mentions
0No linked articles in our index yet.