CVE

Id
58895  
CVE No.
CVE-2012-5652  
Status
Candidate  
Description
Drupal 6.x before 6.27 allows remote attackers to obtain sensitive information about uploaded files via a (1) RSS feed or (2) search result.  
Phase
Assigned (20121024)  
Votes
None (candidate not yet proposed)  
Comments