Vulnerability Details CVE-2015-7227
The Fieldable Panels Panes module 7.x-1.x before 7.x-1.7 for Drupal does not properly check permissions to edit Fieldable Panels Panes entities, which allows remote authenticated users to edit panes by leveraging permissions to edit panels.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.008
EPSS Ranking 51.3%
CVSS Severity
CVSS v2 Score 3.5
Products affected by CVE-2015-7227
-
cpe:2.3:a:fieldable_panels_panes_project:fieldable_panels_panes:7.x-1.0
-
cpe:2.3:a:fieldable_panels_panes_project:fieldable_panels_panes:7.x-1.1
-
cpe:2.3:a:fieldable_panels_panes_project:fieldable_panels_panes:7.x-1.2
-
cpe:2.3:a:fieldable_panels_panes_project:fieldable_panels_panes:7.x-1.3
-
cpe:2.3:a:fieldable_panels_panes_project:fieldable_panels_panes:7.x-1.4
-
cpe:2.3:a:fieldable_panels_panes_project:fieldable_panels_panes:7.x-1.5
-
cpe:2.3:a:fieldable_panels_panes_project:fieldable_panels_panes:7.x-1.6
-
cpe:2.3:a:fieldable_panels_panes_project:fieldable_panels_panes:7.x-1.x