Security Advisory

CVE-2014-1398

6.5
MEDIUM

Vulnerability Description

The entity wrapper access API in the Entity API module 7.x-1.x before 7.x-1.3 for Drupal might allow remote authenticated users to bypass intended access restrictions on comment, user and node statistics properties via unspecified vectors.
Published Date April 10, 2018
Official Source NIST NVD Advisory