CVE-2010-2352
21.06.2010, 19:30
The Node Reference module in Content Construction Kit (CCK) module 5.x before 5.x-1.11 and 6.x before 6.x-2.7 for Drupal does not perform access checks before displaying referenced nodes, which allows remote attackers to read controlled nodes.Enginsight
Vendor | Product | Version |
---|---|---|
karen_stevenson | cck | 5.x-1.0:x |
karen_stevenson | cck | 5.x-1.1:x |
karen_stevenson | cck | 5.x-1.2:x |
karen_stevenson | cck | 5.x-1.3:x |
karen_stevenson | cck | 5.x-1.7:x |
karen_stevenson | cck | 5.x-1.x:x |
karen_stevenson | cck | 6.x-2.0:x |
karen_stevenson | cck | 6.x-2.0:x |
karen_stevenson | cck | 6.x-2.0:x |
karen_stevenson | cck | 6.x-2.0:x |
karen_stevenson | cck | 6.x-2.0:x |
karen_stevenson | cck | 6.x-2.0:x |
karen_stevenson | cck | 6.x-2.0:x |
karen_stevenson | cck | 6.x-2.0:x |
karen_stevenson | cck | 6.x-2.0:x |
karen_stevenson | cck | 6.x-2.0:x |
karen_stevenson | cck | 6.x-2.0:x |
karen_stevenson | cck | 6.x-2.1:x |
karen_stevenson | cck | 6.x-2.2:x |
karen_stevenson | cck | 6.x-2.3:x |
karen_stevenson | cck | 6.x-2.4:x |
karen_stevenson | cck | 6.x-2.5:x |
karen_stevenson | cck | 6.x-2.6:x |
yves_chedemois | cck | 5.x-1.4:x |
yves_chedemois | cck | 5.x-1.5:x |
yves_chedemois | cck | 5.x-1.6:x |
yves_chedemois | cck | 5.x-1.6-1:x |
yves_chedemois | cck | 5.x-1.8:x |
yves_chedemois | cck | 5.x-1.9:x |
yves_chedemois | cck | 5.x-1.10:x |
𝑥
= Vulnerable software versions
Common Weakness Enumeration
References