Vulnerabilities > David Alkire > Email2Image > 6.x.2.x

DATE CVE VULNERABILITY TITLE RISK
2013-03-27 CVE-2013-0257 Permissions, Privileges, and Access Controls vulnerability in David Alkire Email2Image 6.X1.X/6.X2.X
The email2image module 6.x-1.x and 6.x-2.x for Drupal does not properly restrict access to nodes, which allows remote attackers to read images of user email addresses and email fields.
network
low complexity
david-alkire drupal CWE-264
5.0