The Administration Views module 7.x-1.x before 7.x-1.5 for Drupal checks access permissions based on the router path from the view instead of the display property, which allows remote attackers to obtain sensitive information via vectors related to the access handler.
Metrics
Affected Vendors & Products
References
History
No history.

Status: PUBLISHED
Assigner: mitre
Published: 2015-09-17T16:00:00
Updated: 2024-08-06T07:43:45.815Z
Reserved: 2015-09-17T00:00:00
Link: CVE-2015-7226

No data.

Status : Deferred
Published: 2015-09-17T16:59:05.087
Modified: 2025-04-12T10:46:40.837
Link: CVE-2015-7226

No data.