Analysis and contextual insights are available on OpenCVE Cloud.
No vendor fix or workaround currently provided.
Additional remediation guidance may be available on OpenCVE Cloud.
Tracking
Sign in to view the affected projects.
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2024-51469 | Exposure of Sensitive Information Through Data Queries vulnerability in Drupal RESTful Web Services allows Forceful Browsing.This issue affects RESTful Web Services: from 7.X-2.0 before 7.X-2.10. |
| Link | Providers |
|---|---|
| https://www.drupal.org/sa-contrib-2024-019 |
|
Wed, 04 Jun 2025 16:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Restful Web Services Project
Restful Web Services Project restful Web Services |
|
| Weaknesses | NVD-CWE-Other | |
| CPEs | cpe:2.3:a:restful_web_services_project:restful_web_services:*:*:*:*:*:drupal:*:* | |
| Vendors & Products |
Restful Web Services Project
Restful Web Services Project restful Web Services |
Fri, 10 Jan 2025 17:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
cvssV3_1
|
Thu, 09 Jan 2025 19:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | Exposure of Sensitive Information Through Data Queries vulnerability in Drupal RESTful Web Services allows Forceful Browsing.This issue affects RESTful Web Services: from 7.X-2.0 before 7.X-2.10. | |
| Title | RESTful Web Services - Critical - Access bypass - SA-CONTRIB-2024-019 | |
| Weaknesses | CWE-202 | |
| References |
|
Status: PUBLISHED
Assigner: drupal
Published:
Updated: 2025-01-10T17:02:14.839Z
Reserved: 2025-01-09T18:27:17.287Z
Link: CVE-2024-13255
Updated: 2025-01-10T17:02:08.563Z
Status : Analyzed
Published: 2025-01-09T19:15:19.540
Modified: 2025-06-04T16:25:15.250
Link: CVE-2024-13255
No data.
OpenCVE Enrichment
No data.
EUVD