Security Advisory
CVE-2014-1398
6.5
MEDIUM
Vulnerability Description
The entity wrapper access API in the Entity API module 7.x-1.x before 7.x-1.3 for Drupal might allow remote authenticated users to bypass intended access restrictions on comment, user and node statistics properties via unspecified vectors.
Published Date
April 10, 2018
Official Source
NIST NVD Advisory