Security Advisory

CVE-2015-5493

5

Vulnerability Description

The Entityform Block module 7.x-1.x before 7.x-1.3 for Drupal does not properly check permissions when a form is locked to a role, which allows remote attackers to obtain access to certain entityforms via unspecified vectors.
Published Date August 18, 2015
Official Source NIST NVD Advisory