CVE-2013-4500

The Quiz module 6.x-4.x before 6.x-4.5 for Drupal allows remote authenticated users with the "view any quiz results" or "view results for own quiz" permission to delete arbitrary results via the delete option.
Advertisement

NeevaHost hosting service

Configurations

Configuration 1 (hide)

OR cpe:2.3:a:quiz_module_project:quiz:6.x-4.1:*:*:*:*:drupal:*:*
cpe:2.3:a:quiz_module_project:quiz:6.x-4.0:rc10:*:*:*:drupal:*:*
cpe:2.3:a:quiz_module_project:quiz:6.x-4.0:rc5:*:*:*:drupal:*:*
cpe:2.3:a:quiz_module_project:quiz:6.x-4.0:rc3:*:*:*:drupal:*:*
cpe:2.3:a:quiz_module_project:quiz:6.x-4.0:rc1:*:*:*:drupal:*:*
cpe:2.3:a:quiz_module_project:quiz:6.x-4.0:beta4:*:*:*:drupal:*:*
cpe:2.3:a:quiz_module_project:quiz:6.x-4.0:beta2:*:*:*:drupal:*:*
cpe:2.3:a:quiz_module_project:quiz:6.x-4.0:dev:*:*:*:drupal:*:*
cpe:2.3:a:quiz_module_project:quiz:6.x-4.0:rc9:*:*:*:drupal:*:*
cpe:2.3:a:quiz_module_project:quiz:6.x-4.0:rc8:*:*:*:drupal:*:*
cpe:2.3:a:quiz_module_project:quiz:6.x-4.0:rc7:*:*:*:drupal:*:*
cpe:2.3:a:quiz_module_project:quiz:6.x-4.0:alpha5:*:*:*:drupal:*:*
cpe:2.3:a:quiz_module_project:quiz:6.x-4.2:*:*:*:*:drupal:*:*
cpe:2.3:a:quiz_module_project:quiz:6.x-4.0:alpha2:*:*:*:drupal:*:*
cpe:2.3:a:quiz_module_project:quiz:6.x-4.0:rc2:*:*:*:drupal:*:*
cpe:2.3:a:quiz_module_project:quiz:6.x-4.0:beta1:*:*:*:drupal:*:*
cpe:2.3:a:quiz_module_project:quiz:6.x-4.4:*:*:*:*:drupal:*:*
cpe:2.3:a:quiz_module_project:quiz:6.x-4.0:rc6:*:*:*:drupal:*:*
cpe:2.3:a:quiz_module_project:quiz:6.x-4.0:alpha3:*:*:*:drupal:*:*
cpe:2.3:a:quiz_module_project:quiz:6.x-4.0:-:*:*:*:drupal:*:*
cpe:2.3:a:quiz_module_project:quiz:6.x-4.3:*:*:*:*:drupal:*:*
cpe:2.3:a:quiz_module_project:quiz:6.x-4.0:beta6:*:*:*:drupal:*:*
cpe:2.3:a:quiz_module_project:quiz:6.x-4.0:beta8:*:*:*:drupal:*:*
cpe:2.3:a:quiz_module_project:quiz:6.x-4.0:beta7:*:*:*:drupal:*:*
cpe:2.3:a:quiz_module_project:quiz:6.x-4.0:beta3:*:*:*:drupal:*:*
cpe:2.3:a:quiz_module_project:quiz:6.x-4.0:beta5:*:*:*:drupal:*:*
cpe:2.3:a:quiz_module_project:quiz:6.x-4.0:alpha4:*:*:*:drupal:*:*
cpe:2.3:a:quiz_module_project:quiz:6.x-4.0:alpha1:*:*:*:drupal:*:*
cpe:2.3:a:quiz_module_project:quiz:6.x-4.0:rc4:*:*:*:drupal:*:*

Information

Published : 2014-05-13 08:55

Updated : 2014-05-14 09:36


NVD link : CVE-2013-4500

Mitre link : CVE-2013-4500


JSON object : View

CWE
CWE-264

Permissions, Privileges, and Access Controls

Advertisement

dedicated server usa

Products Affected

quiz_module_project

  • quiz