The Web Services module 6.x for Drupal does not perform the expected access control, which allows remote attackers to make unspecified use of an API via unknown vectors.
History

No history.

cve-icon MITRE Information

Status: PUBLISHED

Assigner: mitre

Published: 2009-11-20T19:00:00

Updated: 2017-08-16T14:57:01

Reserved: 2009-11-20T00:00:00


Link: CVE-2009-4044

JSON object: View

cve-icon NVD Information

Status : Modified

Published: 2009-11-20T19:30:01.047

Modified: 2017-08-17T01:31:24.367


Link: CVE-2009-4044

JSON object: View

cve-icon Redhat Information

No data.

CWE