| Vulnerability Name: | CVE-2014-2983 (CCN-92675) | ||||||||||||||||||||||||||||
| Assigned: | 2014-04-16 | ||||||||||||||||||||||||||||
| Published: | 2014-04-16 | ||||||||||||||||||||||||||||
| Updated: | 2021-04-20 | ||||||||||||||||||||||||||||
| Summary: | Drupal 6.x before 6.31 and 7.x before 7.27 does not properly isolate the cached data of different anonymous users, which allows remote anonymous users to obtain sensitive interim form input information in opportunistic situations via unspecified vectors. | ||||||||||||||||||||||||||||
| CVSS v3 Severity: | 5.3 Medium (CCN CVSS v3.1 Vector: CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:N/A:N)
| ||||||||||||||||||||||||||||
| CVSS v2 Severity: | 5.0 Medium (CVSS v2 Vector: AV:N/AC:L/Au:N/C:P/I:N/A:N) 3.7 Low (Temporal CVSS v2 Vector: AV:N/AC:L/Au:N/C:P/I:N/A:N/E:U/RL:OF/RC:C)
3.7 Low (CCN Temporal CVSS v2 Vector: AV:N/AC:L/Au:N/C:P/I:N/A:N/E:U/RL:OF/RC:C)
| ||||||||||||||||||||||||||||
| Vulnerability Type: | CWE-200 | ||||||||||||||||||||||||||||
| Vulnerability Consequences: | Obtain Information | ||||||||||||||||||||||||||||
| References: | Source: MITRE Type: CNA CVE-2014-2983 Source: CCN Type: SA58132 Drupal Form State Information Disclosure Security Issue Source: DEBIAN Type: Third Party Advisory DSA-2913 Source: DEBIAN Type: Third Party Advisory DSA-2914 Source: MLIST Type: Mailing List, Third Party Advisory [oss-security] 20140421 Re: CVE Request for Drupal Core Source: CCN Type: BID-66977 Drupal Core Information Disclosure Vulnerability Source: CCN Type: SA-CORE-2014-002 Drupal core - Information Disclosure Source: CONFIRM Type: Patch, Vendor Advisory https://drupal.org/SA-CORE-2014-002 Source: XF Type: UNKNOWN drupal-api-cve20142983-info-disc(92675) Source: CCN Type: WhiteSource Vulnerability Database CVE-2014-2983 | ||||||||||||||||||||||||||||
| Vulnerable Configuration: | Configuration 1: Configuration 2: Configuration CCN 1: Denotes that component is vulnerable | ||||||||||||||||||||||||||||
| Oval Definitions | |||||||||||||||||||||||||||||
| |||||||||||||||||||||||||||||
| BACK | |||||||||||||||||||||||||||||