NVD

Id
46702  
Name
CVE-2012-5586  
Description
The Services module 6.x-3.x before 6.x-3.3 and 7.x-3.x before 7.x-3.3 for Drupal allows remote authenticated users with the "access user profiles" permission to access arbitrary users" emails via vectors related to the "user index method" and "the path to the user resource."  
Reject
 
CVSS Version
2  
CVSS Score
2.1  
Severity
Low  
CVSS Base Score
2.1  
CVSS Impact Subscore
2.9  
CVSS Exploit Subscore
3.9  
CVSS Vector
(AV:N/AC:H/Au:S/C:P/I:N/A:N)  
Pub Date
2017-01-19  
Published
2012-12-26  
Modified Date
2013-02-25  
Seq
2012-5586  

Actions