← Back

CVE-2008-3745

nvd nist
Published: Aug 27, 2008Modified: Apr 23, 2026

JSON object

Loading...
5.5
Vector
AV:N/AC:L/Au:S/C:N/I:P/A:P
Exploitability: 8.0 / Impact: 4.9
Source: NVD

Description

The Upload module in Drupal 6.x before 6.4 allows remote authenticated users to edit nodes, delete files, and download unauthorized attachments via unspecified vectors.

Affected (5)

2 products
Drupal
Upload Module
Configuration A
5 vulnerable
Vulnerable SoftwareAffected Versions
Drupal
Version 6.0
Version 6.1
Version 6.2
Version 6.3
All versions

Related CWEs

Timeline

No history available yet.