Services
Marc Ingram · 4 CVEs
CVE-2012-5586
LOW
The Services module 6.x-3.x before 6.x-3.3 and 7.x-3.x before 7.x-3.3 for Drupal allows remote authenticated users with…
Dec 26, 2012
CVE-2008-6910
HIGH
Services 5.x before 5.x-0.92 and 6.x before 6.x-0.13, a module for Drupal, does not use timeouts for signed requests, w…
Aug 6, 2009
CVE-2008-6909
MEDIUM
Services 5.x before 5.x-0.92 and 6.x before 6.x-0.13, a module for Drupal, does not sign all required data in requests,…
Aug 6, 2009
CVE-2008-6908
HIGH
Services 5.x before 5.x-0.92 and 6.x before 6.x-0.13, a module for Drupal, uses an insecure hash when signing requests,…
Aug 6, 2009
| CVE ID | Description | Severity | EPSS | Published |
|---|---|---|---|---|
| CVE-2012-5586 | The Services module 6.x-3.x before 6.x-3.3 and 7.x-3.x before 7.x-3.3 for Drupal allows remote authenticated users with the "access user profiles" permission t… | LOW | 0.96% | Dec 26, 2012 |
| CVE-2008-6910 | Services 5.x before 5.x-0.92 and 6.x before 6.x-0.13, a module for Drupal, does not use timeouts for signed requests, which allows remote attackers to imperson… | HIGH | 1.36% | Aug 6, 2009 |
| CVE-2008-6909 | Services 5.x before 5.x-0.92 and 6.x before 6.x-0.13, a module for Drupal, does not sign all required data in requests, which has unspecified impact, probably… | MEDIUM | 1.11% | Aug 6, 2009 |
| CVE-2008-6908 | Services 5.x before 5.x-0.92 and 6.x before 6.x-0.13, a module for Drupal, uses an insecure hash when signing requests, which allows remote attackers to impers… | HIGH | 1.36% | Aug 6, 2009 |
Showing 1 to 4 of 4 CVEs