oss-sec mailing list archives

Re: CVE request: drupal7 SA-CORE-2011-003 (access restriction bypass)


From: Josh Bressers <bressers () redhat com>
Date: Fri, 29 Jul 2011 15:46:42 -0400 (EDT)



----- Original Message -----
Could a CVE be assigned to this issue? This only affects 7.x as the
features affected are new in 7.x. It is an access bypass in private
file fields comments.

http://drupal.org/node/1231510


Please use CVE-2011-2726

Thanks.

-- 
    JB


Current thread: