// For flags

CVE-2009-4558

 

Severity Score

5.0
*CVSS v2

Exploit Likelihood

*EPSS

Affected Versions

*CPE

Public Exploits

0
*Multiple Sources

Exploited in Wild

-
*KEV

Decision

-
*SSVC
Descriptions

The Image Assist module 5.x-1.x before 5.x-1.8, 5.x-2.x before 2.0-alpha4, 6.x-1.x before 6.x-1.1, 6.x-2.x before 2.0-alpha4, and 6.x-3.x-dev before 2009-07-15, a module for Drupal, does not properly enforce privilege requirements for unspecified pages, which allows remote attackers to read the (1) title or (2) body of an arbitrary node via unknown vectors.

El módulo Image Assist v5.x-1.x anterior a v5.x-1.8, v5.x-2.x anterior a v2.0-alpha4, v6.x-1.x anterior a v6.x-1.1, v6.x-2.x anterior a v2.0-alpha4, y v6.x-3.x-dev anterior a v2009-07-15, para Drupal, no refuerza adecuadamente los requisitos de algunos privilegios para páginas que no se han especificado, lo que permite a atacantes remotos leer el (1)título (title) o (2)cuerpo (body) de un nodo de su elección a través de vectores no especificados.

*Credits: N/A
CVSS Scores
Attack Vector
Network
Attack Complexity
Low
Authentication
None
Confidentiality
Partial
Integrity
None
Availability
None
* Common Vulnerability Scoring System
SSVC
  • Decision:-
Exploitation
-
Automatable
-
Tech. Impact
-
* Organization's Worst-case Scenario
Timeline
  • 2010-01-04 CVE Reserved
  • 2010-01-04 CVE Published
  • 2023-03-07 EPSS Updated
  • 2024-08-07 CVE Updated
  • ---------- Exploited in Wild
  • ---------- KEV Due Date
  • ---------- First Exploit
CWE
  • CWE-264: Permissions, Privileges, and Access Controls
CAPEC
Affected Vendors, Products, and Versions
Vendor Product Version Other Status
Vendor Product Version Other Status <-- --> Vendor Product Version Other Status
Unleashedmind
Search vendor "Unleashedmind"
Img Assist
Search vendor "Unleashedmind" for product "Img Assist"
5.x-1.0
Search vendor "Unleashedmind" for product "Img Assist" and version "5.x-1.0"
-
Affected
in Drupal
Search vendor "Drupal"
Drupal
Search vendor "Drupal" for product "Drupal"
*-
Safe
Unleashedmind
Search vendor "Unleashedmind"
Img Assist
Search vendor "Unleashedmind" for product "Img Assist"
5.x-1.1
Search vendor "Unleashedmind" for product "Img Assist" and version "5.x-1.1"
-
Affected
in Drupal
Search vendor "Drupal"
Drupal
Search vendor "Drupal" for product "Drupal"
*-
Safe
Unleashedmind
Search vendor "Unleashedmind"
Img Assist
Search vendor "Unleashedmind" for product "Img Assist"
5.x-1.2
Search vendor "Unleashedmind" for product "Img Assist" and version "5.x-1.2"
-
Affected
in Drupal
Search vendor "Drupal"
Drupal
Search vendor "Drupal" for product "Drupal"
*-
Safe
Unleashedmind
Search vendor "Unleashedmind"
Img Assist
Search vendor "Unleashedmind" for product "Img Assist"
5.x-1.3
Search vendor "Unleashedmind" for product "Img Assist" and version "5.x-1.3"
-
Affected
in Drupal
Search vendor "Drupal"
Drupal
Search vendor "Drupal" for product "Drupal"
*-
Safe
Unleashedmind
Search vendor "Unleashedmind"
Img Assist
Search vendor "Unleashedmind" for product "Img Assist"
5.x-1.4
Search vendor "Unleashedmind" for product "Img Assist" and version "5.x-1.4"
-
Affected
in Drupal
Search vendor "Drupal"
Drupal
Search vendor "Drupal" for product "Drupal"
*-
Safe
Unleashedmind
Search vendor "Unleashedmind"
Img Assist
Search vendor "Unleashedmind" for product "Img Assist"
5.x-1.5
Search vendor "Unleashedmind" for product "Img Assist" and version "5.x-1.5"
-
Affected
in Drupal
Search vendor "Drupal"
Drupal
Search vendor "Drupal" for product "Drupal"
*-
Safe
Unleashedmind
Search vendor "Unleashedmind"
Img Assist
Search vendor "Unleashedmind" for product "Img Assist"
5.x-1.6
Search vendor "Unleashedmind" for product "Img Assist" and version "5.x-1.6"
-
Affected
in Drupal
Search vendor "Drupal"
Drupal
Search vendor "Drupal" for product "Drupal"
*-
Safe
Unleashedmind
Search vendor "Unleashedmind"
Img Assist
Search vendor "Unleashedmind" for product "Img Assist"
5.x-1.7
Search vendor "Unleashedmind" for product "Img Assist" and version "5.x-1.7"
-
Affected
in Drupal
Search vendor "Drupal"
Drupal
Search vendor "Drupal" for product "Drupal"
*-
Safe
Unleashedmind
Search vendor "Unleashedmind"
Img Assist
Search vendor "Unleashedmind" for product "Img Assist"
5.x-1.x-dev
Search vendor "Unleashedmind" for product "Img Assist" and version "5.x-1.x-dev"
-
Affected
in Drupal
Search vendor "Drupal"
Drupal
Search vendor "Drupal" for product "Drupal"
*-
Safe
Unleashedmind
Search vendor "Unleashedmind"
Img Assist
Search vendor "Unleashedmind" for product "Img Assist"
5.x-2.0-alpha1
Search vendor "Unleashedmind" for product "Img Assist" and version "5.x-2.0-alpha1"
-
Affected
in Drupal
Search vendor "Drupal"
Drupal
Search vendor "Drupal" for product "Drupal"
*-
Safe
Unleashedmind
Search vendor "Unleashedmind"
Img Assist
Search vendor "Unleashedmind" for product "Img Assist"
5.x-2.0-alpha3
Search vendor "Unleashedmind" for product "Img Assist" and version "5.x-2.0-alpha3"
-
Affected
in Drupal
Search vendor "Drupal"
Drupal
Search vendor "Drupal" for product "Drupal"
*-
Safe
Unleashedmind
Search vendor "Unleashedmind"
Img Assist
Search vendor "Unleashedmind" for product "Img Assist"
5.x-2.x-dev
Search vendor "Unleashedmind" for product "Img Assist" and version "5.x-2.x-dev"
-
Affected
in Drupal
Search vendor "Drupal"
Drupal
Search vendor "Drupal" for product "Drupal"
*-
Safe
Unleashedmind
Search vendor "Unleashedmind"
Img Assist
Search vendor "Unleashedmind" for product "Img Assist"
6.x-1.0
Search vendor "Unleashedmind" for product "Img Assist" and version "6.x-1.0"
-
Affected
in Drupal
Search vendor "Drupal"
Drupal
Search vendor "Drupal" for product "Drupal"
*-
Safe
Unleashedmind
Search vendor "Unleashedmind"
Img Assist
Search vendor "Unleashedmind" for product "Img Assist"
6.x-1.0-beta1
Search vendor "Unleashedmind" for product "Img Assist" and version "6.x-1.0-beta1"
-
Affected
in Drupal
Search vendor "Drupal"
Drupal
Search vendor "Drupal" for product "Drupal"
*-
Safe
Unleashedmind
Search vendor "Unleashedmind"
Img Assist
Search vendor "Unleashedmind" for product "Img Assist"
6.x-1.x-dev
Search vendor "Unleashedmind" for product "Img Assist" and version "6.x-1.x-dev"
-
Affected
in Drupal
Search vendor "Drupal"
Drupal
Search vendor "Drupal" for product "Drupal"
*-
Safe
Unleashedmind
Search vendor "Unleashedmind"
Img Assist
Search vendor "Unleashedmind" for product "Img Assist"
6.x-2.0-alpha2
Search vendor "Unleashedmind" for product "Img Assist" and version "6.x-2.0-alpha2"
-
Affected
in Drupal
Search vendor "Drupal"
Drupal
Search vendor "Drupal" for product "Drupal"
*-
Safe
Unleashedmind
Search vendor "Unleashedmind"
Img Assist
Search vendor "Unleashedmind" for product "Img Assist"
6.x-2.0-alpha3
Search vendor "Unleashedmind" for product "Img Assist" and version "6.x-2.0-alpha3"
-
Affected
in Drupal
Search vendor "Drupal"
Drupal
Search vendor "Drupal" for product "Drupal"
*-
Safe
Unleashedmind
Search vendor "Unleashedmind"
Img Assist
Search vendor "Unleashedmind" for product "Img Assist"
6.x-2.x-dev
Search vendor "Unleashedmind" for product "Img Assist" and version "6.x-2.x-dev"
-
Affected
in Drupal
Search vendor "Drupal"
Drupal
Search vendor "Drupal" for product "Drupal"
*-
Safe
Unleashedmind
Search vendor "Unleashedmind"
Img Assist
Search vendor "Unleashedmind" for product "Img Assist"
6.x-3.x-dev
Search vendor "Unleashedmind" for product "Img Assist" and version "6.x-3.x-dev"
-
Affected
in Drupal
Search vendor "Drupal"
Drupal
Search vendor "Drupal" for product "Drupal"
*-
Safe