CVE-2012-4471
30.11.2012, 22:55
The Search Autocomplete module 7.x-2.x before 7.x-2.4 for Drupal does not properly restrict access to the module admin page, which allows remote attackers to disable an autocompletion or change the priority order via unspecified vectors.Enginsight
Vendor | Product | Version |
---|---|---|
dominique_clause | search_autocomplete | 7.x-2.0:x |
dominique_clause | search_autocomplete | 7.x-2.1:x |
dominique_clause | search_autocomplete | 7.x-2.3:x |
dominique_clause | search_autocomplete | 7.x-2.x:x |
𝑥
= Vulnerable software versions
Common Weakness Enumeration
References