Vulnerabilities > Bart Feenstra > Payment

DATE CVE VULNERABILITY TITLE RISK
2013-03-27 CVE-2013-0182 Permissions, Privileges, and Access Controls vulnerability in Bart Feenstra Payment
The Payment module 7.x-1.x before 7.x-1.3 for Drupal does not properly restrict access to payments, which allows remote attackers to read arbitrary payments.
network
low complexity
bart-feenstra drupal CWE-264
5.0