Drupal Core system.temporary Information Disclosure Vulnerability (CVE-2016-7572)
Publish date: 11 de enero de 2017
Gravedad: Medio
Descripción
Drupal Core is prone to a information disclosure vulnerability. The vulnerability is due to insufficient access control on the ability to download a full configuration export. A remote, authenticated user can exploit this vulnerability by sending a crafted request to the target. Successful exploitation could lead to disclosure of sensitive information.
Revelación de la información
Apply associated Trend Micro DPI Rules.
Soluciones
Trend Micro Deep Security DPI Rule Number: 1008096