Arbitrary File Deletion Vulnerability in OSF Module for Drupal

Arbitrary File Deletion Vulnerability in OSF Module for Drupal

CVE-2015-7234 · MEDIUM Severity

AV:N/AC:H/AU:N/C:N/I:P/A:P

The OSF module 7.x-3.x before 7.x-3.1 for Drupal, when the OSF Ontology and OSF Import modules are enabled, allows user-assisted remote attackers to delete arbitrary files via unspecified vectors.

Learn more about our User Device Pen Test.