Vulnerabilities > Twilio Project

DATE CVE VULNERABILITY TITLE RISK
2014-11-20 CVE-2014-9023 Permissions, Privileges, and Access Controls vulnerability in Twilio Project Twilio
The Twilio module 7.x-1.x before 7.x-1.9 for Drupal does not properly restrict access to the Twilio administration pages, which allows remote authenticated users to read and modify authentication tokens by leveraging the "access administration pages" Drupal permission.
network
low complexity
twilio-project CWE-264
5.5