cbcvebase.
CVE-2013-1925
published 2013-07-16

CVE-2013-1925: The Chaos Tool Suite (ctools) module 7.x-1.x before 7.x-1.3 for Drupal does not properly restrict node access, which allows remote authenticated users with the…

PriorityP418low3.5CVSS 2.0
AVNACMAuSCPINAN
EPSS
1.77%
75.7th percentile
The Chaos Tool Suite (ctools) module 7.x-1.x before 7.x-1.3 for Drupal does not properly restrict node access, which allows remote authenticated users with the "access content" permission to read restricted node titles via an autocomplete list.

Affected

4 ranges
VendorProductVersion rangeFixed in
chaos_tool_suite_projectctools
chaos_tool_suite_projectctools
chaos_tool_suite_projectctools
chaos_tool_suite_projectctools
Stop checking back — get the weekly exploitation signal.

Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.