VYPR

Discussions sub module

by Drupal

CVEs (1)

  • CVE-2014-9503MedFeb 1, 2018
    risk 0.42cvss 6.5epss 0.01

    The Discussions sub module in the Open Atrium module 7.x-2.x before 7.x-2.26 for Drupal allows remote authenticated users with "access content" permissions to modify arbitrary nodes by leveraging improper access checks on unspecified ajax callbacks.