Drupal Permissions Privileges and Access Controls Vulnerability - CVE-2014-5267 - Vulnerability Database

Drupal Permissions Privileges and Access Controls Vulnerability - CVE-2014-5267

Medium
Reference: CVE-2014-5267
Title: Drupal Permissions Privileges and Access Controls Vulnerability
Overview:

modules/openid/xrds.inc in Drupal 6.x before 6.33 and 7.x before 7.31 allows remote attackers to have unspecified impact via a crafted DOCTYPE declaration in an XRDS document.