CVE-2011-4113

SQL injection vulnerability in the Views module before 6.x-2.13 for Drupal allows remote attackers to execute arbitrary SQL commands via vectors related to "filters/arguments on certain types of views with specific configurations of arguments."

Published: 2012-02-17 Last update: 2026-06-16 Assigner: [email protected] Source: [email protected]

Conclusion & alert: CVE-2011-4113 is rated Moderate Risk (56.8/100): CVSS High severity, with medium exploitation likelihood (EPSS 1.73%). Mandatory action: Review affected assets and schedule remediation.

Risk is dynamic; we continuously reassess and refresh what is shown on this page as upstream context changes.

Exploit prediction scoring system (EPSS) score for CVE-2011-4113

EPSS lead: Daily EPSS estimates relative likelihood of exploitation; percentile ranks this CVE among scored vulnerabilities (higher = more severe relative rank).

# Date Old EPSS score New EPSS score Delta (New - Old)
1 2026-06-15 1.04% 1.73% +0.68%
2 2025-12-28 1.08% 1.04% -0.04%
3 2025-12-27 1.08%

Full EPSS history (13 records total)

Common vulnerability scoring system (CVSS) metrics for CVE-2011-4113

CVSS metrics for this CVE.

Base score Version Severity Vector Exploitability Impact Score source
7.5 2.0 HIGH
AV:N/AC:L/Au:N/C:P/I:P/A:P Click to expand
Access vector (AV:N)
Can be exploited remotely over network reachability.
Access complexity (AC:L)
Exploitation conditions are straightforward and predictable.
Authentication (AU:N)
No authentication is required.
Confidentiality impact (C:P)
Partial confidentiality impact.
Integrity impact (I:P)
Partial integrity impact.
Availability impact (A:P)
Partial availability impact.
10.0 6.4 [email protected]

Weakness enumeration for CVE-2011-4113

OS Trackers for CVE-2011-4113

vendor priority summary link
ubuntu medium CVE-2011-4113 medium priority: Ubuntu including 1 source packages (drupal6-mod-views), 9 status rows across 9 suites (hardy, lucid, maverick, natty, oneiric, precise, quantal, raring, upstream): DNE 3, not-affected 3, ignored 2, released 1. https://ubuntu.com/security/CVE-2011-4113

Affected software / configurations for CVE-2011-4113

Vendor Product Version Raw CPE
earl_miles views <= 6.x-2.12 cpe:2.3:a:earl_miles:views:*:*:*:*:*:*:*:*
earl_miles views 4.7.x-1.0 cpe:2.3:a:earl_miles:views:4.7.x-1.0:*:*:*:*:*:*:*
earl_miles views 4.7.x-1.1 cpe:2.3:a:earl_miles:views:4.7.x-1.1:*:*:*:*:*:*:*
earl_miles views 4.7.x-1.2 cpe:2.3:a:earl_miles:views:4.7.x-1.2:*:*:*:*:*:*:*
earl_miles views 4.7.x-1.3 cpe:2.3:a:earl_miles:views:4.7.x-1.3:*:*:*:*:*:*:*
earl_miles views 4.7.x-1.4 cpe:2.3:a:earl_miles:views:4.7.x-1.4:*:*:*:*:*:*:*
earl_miles views 4.7.x-1.4.2 cpe:2.3:a:earl_miles:views:4.7.x-1.4.2:*:*:*:*:*:*:*
earl_miles views 4.7.x-1.6 cpe:2.3:a:earl_miles:views:4.7.x-1.6:*:*:*:*:*:*:*
earl_miles views 4.7.x-1.6 cpe:2.3:a:earl_miles:views:4.7.x-1.6:beta:*:*:*:*:*:*
earl_miles views 4.7.x-1.6 cpe:2.3:a:earl_miles:views:4.7.x-1.6:beta2:*:*:*:*:*:*
earl_miles views 4.7.x-1.6 cpe:2.3:a:earl_miles:views:4.7.x-1.6:beta3:*:*:*:*:*:*
earl_miles views 4.7.x-1.6 cpe:2.3:a:earl_miles:views:4.7.x-1.6:beta5:*:*:*:*:*:*
earl_miles views 4.7.x-1.x cpe:2.3:a:earl_miles:views:4.7.x-1.x:dev:*:*:*:*:*:*
earl_miles views 4.7.x1.5 cpe:2.3:a:earl_miles:views:4.7.x1.5:*:*:*:*:*:*:*
earl_miles views 5.x-1.0 cpe:2.3:a:earl_miles:views:5.x-1.0:*:*:*:*:*:*:*
earl_miles views 5.x-1.1 cpe:2.3:a:earl_miles:views:5.x-1.1:beta:*:*:*:*:*:*
earl_miles views 5.x-1.2 cpe:2.3:a:earl_miles:views:5.x-1.2:beta1:*:*:*:*:*:*
earl_miles views 5.x-1.3 cpe:2.3:a:earl_miles:views:5.x-1.3:beta1:*:*:*:*:*:*
earl_miles views 5.x-1.4 cpe:2.3:a:earl_miles:views:5.x-1.4:rc1:*:*:*:*:*:*
earl_miles views 5.x-1.4-2 cpe:2.3:a:earl_miles:views:5.x-1.4-2:rc1:*:*:*:*:*:*
earl_miles views 5.x-1.5 cpe:2.3:a:earl_miles:views:5.x-1.5:*:*:*:*:*:*:*
earl_miles views 5.x-1.6 cpe:2.3:a:earl_miles:views:5.x-1.6:*:*:*:*:*:*:*
earl_miles views 5.x-1.6 cpe:2.3:a:earl_miles:views:5.x-1.6:beta:*:*:*:*:*:*
earl_miles views 5.x-1.6 cpe:2.3:a:earl_miles:views:5.x-1.6:beta2:*:*:*:*:*:*
earl_miles views 5.x-1.6 cpe:2.3:a:earl_miles:views:5.x-1.6:beta3:*:*:*:*:*:*
earl_miles views 5.x-1.6 cpe:2.3:a:earl_miles:views:5.x-1.6:beta4:*:*:*:*:*:*
earl_miles views 5.x-1.6 cpe:2.3:a:earl_miles:views:5.x-1.6:beta5:*:*:*:*:*:*
earl_miles views 5.x-1.7 cpe:2.3:a:earl_miles:views:5.x-1.7:*:*:*:*:*:*:*
earl_miles views 5.x-1.8 cpe:2.3:a:earl_miles:views:5.x-1.8:*:*:*:*:*:*:*
earl_miles views 5.x-1.x cpe:2.3:a:earl_miles:views:5.x-1.x:dev:*:*:*:*:*:*
earl_miles views 6.x-2.0 cpe:2.3:a:earl_miles:views:6.x-2.0:*:*:*:*:*:*:*
earl_miles views 6.x-2.0 cpe:2.3:a:earl_miles:views:6.x-2.0:alpha1:*:*:*:*:*:*
earl_miles views 6.x-2.0 cpe:2.3:a:earl_miles:views:6.x-2.0:alpha2:*:*:*:*:*:*
earl_miles views 6.x-2.0 cpe:2.3:a:earl_miles:views:6.x-2.0:alpha3:*:*:*:*:*:*
earl_miles views 6.x-2.0 cpe:2.3:a:earl_miles:views:6.x-2.0:alpha4:*:*:*:*:*:*
earl_miles views 6.x-2.0 cpe:2.3:a:earl_miles:views:6.x-2.0:alpha5:*:*:*:*:*:*
earl_miles views 6.x-2.0 cpe:2.3:a:earl_miles:views:6.x-2.0:beta1:*:*:*:*:*:*
earl_miles views 6.x-2.0 cpe:2.3:a:earl_miles:views:6.x-2.0:beta2:*:*:*:*:*:*
earl_miles views 6.x-2.0 cpe:2.3:a:earl_miles:views:6.x-2.0:beta3:*:*:*:*:*:*
earl_miles views 6.x-2.0 cpe:2.3:a:earl_miles:views:6.x-2.0:beta4:*:*:*:*:*:*
earl_miles views 6.x-2.0 cpe:2.3:a:earl_miles:views:6.x-2.0:rc1:*:*:*:*:*:*
earl_miles views 6.x-2.0 cpe:2.3:a:earl_miles:views:6.x-2.0:rc2:*:*:*:*:*:*
earl_miles views 6.x-2.0 cpe:2.3:a:earl_miles:views:6.x-2.0:rc3:*:*:*:*:*:*
earl_miles views 6.x-2.0 cpe:2.3:a:earl_miles:views:6.x-2.0:rc4:*:*:*:*:*:*
earl_miles views 6.x-2.0 cpe:2.3:a:earl_miles:views:6.x-2.0:rc5:*:*:*:*:*:*
earl_miles views 6.x-2.1 cpe:2.3:a:earl_miles:views:6.x-2.1:*:*:*:*:*:*:*
earl_miles views 6.x-2.2 cpe:2.3:a:earl_miles:views:6.x-2.2:*:*:*:*:*:*:*
earl_miles views 6.x-2.3 cpe:2.3:a:earl_miles:views:6.x-2.3:*:*:*:*:*:*:*
earl_miles views 6.x-2.4 cpe:2.3:a:earl_miles:views:6.x-2.4:*:*:*:*:*:*:*
earl_miles views 6.x-2.5 cpe:2.3:a:earl_miles:views:6.x-2.5:*:*:*:*:*:*:*
earl_miles views 6.x-2.6 cpe:2.3:a:earl_miles:views:6.x-2.6:*:*:*:*:*:*:*
earl_miles views 6.x-2.7 cpe:2.3:a:earl_miles:views:6.x-2.7:*:*:*:*:*:*:*
earl_miles views 6.x-2.8 cpe:2.3:a:earl_miles:views:6.x-2.8:*:*:*:*:*:*:*
earl_miles views 6.x-2.9 cpe:2.3:a:earl_miles:views:6.x-2.9:*:*:*:*:*:*:*
earl_miles views 6.x-2.10 cpe:2.3:a:earl_miles:views:6.x-2.10:*:*:*:*:*:*:*
earl_miles views 6.x-2.11 cpe:2.3:a:earl_miles:views:6.x-2.11:*:*:*:*:*:*:*
earl_miles views 6.x-2.x cpe:2.3:a:earl_miles:views:6.x-2.x:dev:*:*:*:*:*:*

References for CVE-2011-4113

cvelogic Threat Intelligence