SB2023031541 - Multiple vulnerabilities in Drupal



SB2023031541 - Multiple vulnerabilities in Drupal

Published: March 15, 2023

Security Bulletin ID SB2023031541
Severity
Medium
Patch available
YES
Number of vulnerabilities 3
Exploitation vector Remote access
Highest impact Information disclosure

Breakdown by Severity

Medium 67% Low 33%
  • Low
  • Medium
  • High
  • Critical

Description

This security bulletin contains information about 3 secuirty vulnerabilities.


1) Improper access control (CVE-ID: N/A)

The vulnerability allows a remote attacker to gain unauthorized access to otherwise restricted functionality.

The vulnerability exists due to improper access restrictions to the page that outputs the markup from phpinfo() to assist with diagnosing PHP configuration.. A remote attacker who can exploit an XSS vulnerability on the website can retrieve data from the phpinfo() output.


2) Information disclosure (CVE-ID: N/A)

The vulnerability allows a remote attacker to gain access to potentially sensitive information.

The vulnerability exists due to the way the language module handles translations of articles. A remote attacker can use the Language switcher block to obtain links to quickly switch between different languages and use these links to view unpublished translations. When used in conjunction with a module like Pathauto, this may reveal the title of unpublished content.


3) Improper access control (CVE-ID: N/A)

The vulnerability allows a remote attacker to gain unauthorized access to thumbnails of media items.

The vulnerability exists due to improper access restrictions to thumbnails of media items. A remote attacker can view contents of potentially sensitive files.


Remediation

Install update from vendor's website.