Bypassing Access Restrictions and Obtaining Sensitive Node Titles in Path Breadcrumbs Module for Drupal

Bypassing Access Restrictions and Obtaining Sensitive Node Titles in Path Breadcrumbs Module for Drupal

CVE-2015-3391 · MEDIUM Severity

AV:N/AC:L/AU:N/C:P/I:N/A:N

The Path Breadcrumbs module before 7.x-3.2 for Drupal allows remote attackers to bypass intended access restrictions and obtain sensitive node titles by reading a 403 Not Found page.

Learn more about our Web Application Penetration Testing UK.