Vulnerability Details CVE-2015-7227
The Fieldable Panels Panes module 7.x-1.x before 7.x-1.7 for Drupal does not properly check permissions to edit Fieldable Panels Panes entities, which allows remote authenticated users to edit panes by leveraging permissions to edit panels.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.001
EPSS Ranking 33.3%
CVSS Severity
CVSS v2 Score 3.5
Products affected by CVE-2015-7227
-
cpe:2.3:a:fieldable_panels_panes_project:fieldable_panels_panes:7.x-1.0
-
cpe:2.3:a:fieldable_panels_panes_project:fieldable_panels_panes:7.x-1.1
-
cpe:2.3:a:fieldable_panels_panes_project:fieldable_panels_panes:7.x-1.2
-
cpe:2.3:a:fieldable_panels_panes_project:fieldable_panels_panes:7.x-1.3
-
cpe:2.3:a:fieldable_panels_panes_project:fieldable_panels_panes:7.x-1.4
-
cpe:2.3:a:fieldable_panels_panes_project:fieldable_panels_panes:7.x-1.5
-
cpe:2.3:a:fieldable_panels_panes_project:fieldable_panels_panes:7.x-1.6
-
cpe:2.3:a:fieldable_panels_panes_project:fieldable_panels_panes:7.x-1.x