Vulnerability Name:

CVE-2014-5020 (CCN-94683)

Assigned:2014-07-16
Published:2014-07-16
Updated:2014-07-22
Summary:The File module in Drupal 7.x before 7.29 does not properly check permissions to view files, which allows remote authenticated users with certain permissions to bypass intended restrictions and read files by attaching the file to content with a file field.
CVSS v3 Severity:5.3 Medium (CCN CVSS v3.1 Vector: CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:L/A:N)
Exploitability Metrics:Attack Vector (AV): Network
Attack Complexity (AC): Low
Privileges Required (PR): None
User Interaction (UI): None
Scope:Scope (S): Unchanged
Impact Metrics:Confidentiality (C): None
Integrity (I): Low
Availibility (A): None
CVSS v2 Severity:4.9 Medium (CVSS v2 Vector: AV:N/AC:M/Au:S/C:P/I:P/A:N)
3.6 Low (Temporal CVSS v2 Vector: AV:N/AC:M/Au:S/C:P/I:P/A:N/E:U/RL:OF/RC:C)
Exploitability Metrics:Access Vector (AV): Network
Access Complexity (AC): Medium
Authentication (Au): Single_Instance
Impact Metrics:Confidentiality (C): Partial
Integrity (I): Partial
Availibility (A): None
5.0 Medium (CCN CVSS v2 Vector: AV:N/AC:L/Au:N/C:N/I:P/A:N)
3.7 Low (CCN Temporal CVSS v2 Vector: AV:N/AC:L/Au:N/C:N/I:P/A:N/E:U/RL:OF/RC:C)
Exploitability Metrics:Access Vector (AV): Network
Access Complexity (AC): Low
Athentication (Au): None
Impact Metrics:Confidentiality (C): None
Integrity (I): Partial
Availibility (A): None
Vulnerability Type:CWE-264
Vulnerability Consequences:Bypass Security
References:Source: MITRE
Type: CNA
CVE-2014-5020

Source: DEBIAN
Type: UNKNOWN
DSA-2983

Source: CCN
Type: OSVDB ID: 109236
Drupal Core File Module File Attachment Permission Verification Arbitrary File Access

Source: CCN
Type: BID-68706
Drupal Multiple Remote Security Vulnerabilities

Source: XF
Type: UNKNOWN
drupalcore-file-sec-bypass(94683)

Source: CCN
Type: DRUPAL-SA-CORE-2014-003
Drupal core - Multiple vulnerabilities

Source: CONFIRM
Type: Patch, Vendor Advisory
https://www.drupal.org/SA-CORE-2014-003

Vulnerable Configuration:Configuration 1:
  • cpe:/a:drupal:drupal:7.0:*:*:*:*:*:*:*
  • OR cpe:/a:drupal:drupal:7.0:alpha1:*:*:*:*:*:*
  • OR cpe:/a:drupal:drupal:7.0:alpha2:*:*:*:*:*:*
  • OR cpe:/a:drupal:drupal:7.0:alpha3:*:*:*:*:*:*
  • OR cpe:/a:drupal:drupal:7.0:alpha4:*:*:*:*:*:*
  • OR cpe:/a:drupal:drupal:7.0:alpha5:*:*:*:*:*:*
  • OR cpe:/a:drupal:drupal:7.0:alpha6:*:*:*:*:*:*
  • OR cpe:/a:drupal:drupal:7.0:alpha7:*:*:*:*:*:*
  • OR cpe:/a:drupal:drupal:7.0:beta1:*:*:*:*:*:*
  • OR cpe:/a:drupal:drupal:7.0:beta2:*:*:*:*:*:*
  • OR cpe:/a:drupal:drupal:7.0:beta3:*:*:*:*:*:*
  • OR cpe:/a:drupal:drupal:7.0:dev:*:*:*:*:*:*
  • OR cpe:/a:drupal:drupal:7.0:rc1:*:*:*:*:*:*
  • OR cpe:/a:drupal:drupal:7.0:rc2:*:*:*:*:*:*
  • OR cpe:/a:drupal:drupal:7.0:rc3:*:*:*:*:*:*
  • OR cpe:/a:drupal:drupal:7.0:rc4:*:*:*:*:*:*
  • OR cpe:/a:drupal:drupal:7.1:*:*:*:*:*:*:*
  • OR cpe:/a:drupal:drupal:7.2:*:*:*:*:*:*:*
  • OR cpe:/a:drupal:drupal:7.3:*:*:*:*:*:*:*
  • OR cpe:/a:drupal:drupal:7.4:*:*:*:*:*:*:*
  • OR cpe:/a:drupal:drupal:7.5:*:*:*:*:*:*:*
  • OR cpe:/a:drupal:drupal:7.6:*:*:*:*:*:*:*
  • OR cpe:/a:drupal:drupal:7.7:*:*:*:*:*:*:*
  • OR cpe:/a:drupal:drupal:7.8:*:*:*:*:*:*:*
  • OR cpe:/a:drupal:drupal:7.9:*:*:*:*:*:*:*
  • OR cpe:/a:drupal:drupal:7.10:*:*:*:*:*:*:*
  • OR cpe:/a:drupal:drupal:7.11:*:*:*:*:*:*:*
  • OR cpe:/a:drupal:drupal:7.12:*:*:*:*:*:*:*
  • OR cpe:/a:drupal:drupal:7.13:*:*:*:*:*:*:*
  • OR cpe:/a:drupal:drupal:7.14:*:*:*:*:*:*:*
  • OR cpe:/a:drupal:drupal:7.15:*:*:*:*:*:*:*
  • OR cpe:/a:drupal:drupal:7.16:*:*:*:*:*:*:*
  • OR cpe:/a:drupal:drupal:7.17:*:*:*:*:*:*:*
  • OR cpe:/a:drupal:drupal:7.18:*:*:*:*:*:*:*
  • OR cpe:/a:drupal:drupal:7.19:*:*:*:*:*:*:*
  • OR cpe:/a:drupal:drupal:7.20:*:*:*:*:*:*:*
  • OR cpe:/a:drupal:drupal:7.21:*:*:*:*:*:*:*
  • OR cpe:/a:drupal:drupal:7.22:*:*:*:*:*:*:*
  • OR cpe:/a:drupal:drupal:7.23:*:*:*:*:*:*:*
  • OR cpe:/a:drupal:drupal:7.24:*:*:*:*:*:*:*
  • OR cpe:/a:drupal:drupal:7.25:*:*:*:*:*:*:*
  • OR cpe:/a:drupal:drupal:7.26:*:*:*:*:*:*:*
  • OR cpe:/a:drupal:drupal:7.27:*:*:*:*:*:*:*
  • OR cpe:/a:drupal:drupal:7.28:*:*:*:*:*:*:*
  • OR cpe:/a:drupal:drupal:7.x-dev:*:*:*:*:*:*:*

  • Configuration CCN 1:
  • cpe:/a:drupal:drupal:6.31:*:*:*:*:*:*:*
  • OR cpe:/a:drupal:drupal:7.28:*:*:*:*:*:*:*

  • * Denotes that component is vulnerable
    Oval Definitions
    Definition IDClassTitleLast Modified
    oval:com.ubuntu.artful:def:20145020000
    V
    CVE-2014-5020 on Ubuntu 17.10 (artful) - medium.
    2014-07-22
    oval:com.ubuntu.xenial:def:201450200000000
    V
    CVE-2014-5020 on Ubuntu 16.04 LTS (xenial) - medium.
    2014-07-22
    oval:com.ubuntu.precise:def:20145020000
    V
    CVE-2014-5020 on Ubuntu 12.04 LTS (precise) - medium.
    2014-07-22
    oval:com.ubuntu.trusty:def:20145020000
    V
    CVE-2014-5020 on Ubuntu 14.04 LTS (trusty) - medium.
    2014-07-22
    oval:com.ubuntu.xenial:def:20145020000
    V
    CVE-2014-5020 on Ubuntu 16.04 LTS (xenial) - medium.
    2014-07-22
    BACK
    drupal drupal 7.0
    drupal drupal 7.0 alpha1
    drupal drupal 7.0 alpha2
    drupal drupal 7.0 alpha3
    drupal drupal 7.0 alpha4
    drupal drupal 7.0 alpha5
    drupal drupal 7.0 alpha6
    drupal drupal 7.0 alpha7
    drupal drupal 7.0 beta1
    drupal drupal 7.0 beta2
    drupal drupal 7.0 beta3
    drupal drupal 7.0 dev
    drupal drupal 7.0 rc1
    drupal drupal 7.0 rc2
    drupal drupal 7.0 rc3
    drupal drupal 7.0 rc4
    drupal drupal 7.1
    drupal drupal 7.2
    drupal drupal 7.3
    drupal drupal 7.4
    drupal drupal 7.5
    drupal drupal 7.6
    drupal drupal 7.7
    drupal drupal 7.8
    drupal drupal 7.9
    drupal drupal 7.10
    drupal drupal 7.11
    drupal drupal 7.12
    drupal drupal 7.13
    drupal drupal 7.14
    drupal drupal 7.15
    drupal drupal 7.16
    drupal drupal 7.17
    drupal drupal 7.18
    drupal drupal 7.19
    drupal drupal 7.20
    drupal drupal 7.21
    drupal drupal 7.22
    drupal drupal 7.23
    drupal drupal 7.24
    drupal drupal 7.25
    drupal drupal 7.26
    drupal drupal 7.27
    drupal drupal 7.28
    drupal drupal 7.x-dev
    drupal drupal 6.31
    drupal drupal 7.28