Unrated severityNVD Advisory· Published Jun 9, 2014· Updated May 6, 2026
CVE-2013-4595
CVE-2013-4595
Description
The Secure Pages module 6.x-2.x before 6.x-2.0 for Drupal does not properly match URLs, which causes HTTP to be used instead of HTTPS and makes it easier for remote attackers to obtain sensitive information via a crafted web page.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
2cpe:2.3:a:gordon_heydon:secure_pages:6.x-2.x:dev:-:*:-:drupal:*:*+ 1 more
- cpe:2.3:a:gordon_heydon:secure_pages:6.x-2.x:dev:-:*:-:drupal:*:*
- (no CPE)range: <6.x-2.0
Patches
Vulnerability mechanics
References
3- drupal.org/node/2128739nvdPatch
- drupal.org/node/2129381nvdVendor Advisory
- seclists.org/oss-sec/2013/q4/317nvd
News mentions
0No linked articles in our index yet.