Unrated severityNVD Advisory· Published Dec 19, 2013· Updated Jun 17, 2026
CVE-2013-7067
CVE-2013-7067
Description
The OG Features module 6.x-1.x before 6.x-1.4 for Drupal does not properly override pages that have an access callback set to false, which allows remote attackers to bypass intended access restrictions via a request.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
10cpe:2.3:a:mike_stefanello:og_features:6.x-1.0:*:*:*:*:*:*:*+ 8 more
- cpe:2.3:a:mike_stefanello:og_features:6.x-1.0:*:*:*:*:*:*:*
- cpe:2.3:a:mike_stefanello:og_features:6.x-1.0:beta1:*:*:*:*:*:*
- cpe:2.3:a:mike_stefanello:og_features:6.x-1.0:beta2:*:*:*:*:*:*
- cpe:2.3:a:mike_stefanello:og_features:6.x-1.0:beta3:*:*:*:*:*:*
- cpe:2.3:a:mike_stefanello:og_features:6.x-1.0:beta4:*:*:*:*:*:*
- cpe:2.3:a:mike_stefanello:og_features:6.x-1.1:*:*:*:*:*:*:*
- cpe:2.3:a:mike_stefanello:og_features:6.x-1.2:*:*:*:*:*:*:*
- cpe:2.3:a:mike_stefanello:og_features:6.x-1.3:*:*:*:*:*:*:*
- cpe:2.3:a:mike_stefanello:og_features:6.x-1.x:dev:*:*:*:*:*:*
- Range: >= 6.x-1.0, < 6.x-1.4
Patches
Vulnerability mechanics
References
5- drupal.org/node/2149743nvdPatch
- drupal.org/node/2149791nvdPatchVendor Advisory
- osvdb.org/100611nvd
- www.securityfocus.com/bid/64134nvd
- exchange.xforce.ibmcloud.com/vulnerabilities/89458nvd
News mentions
0No linked articles in our index yet.