Unrated severityNVD Advisory· Published Nov 12, 2014· Updated May 6, 2026
CVE-2014-8736
CVE-2014-8736
Description
The Open Atrium Core module for Drupal before 7.x-2.22 allows remote attackers to bypass access restrictions and read file attachments that have been removed from a node by leveraging a previous revision of the node.
Affected products
1- cpe:2.3:a:open_atrium_project:open_atrium:*:*:*:*:*:drupal:*:*Range: <=7.x-2.21
Patches
0No patches discovered yet.
Vulnerability mechanics
AI mechanics synthesis has not run for this CVE yet.
References
2- www.drupal.org/node/2357279nvdPatch
- www.drupal.org/node/2357295nvdPatchVendor Advisory
News mentions
0No linked articles in our index yet.