CVE-2012-4483
31.10.2012, 16:55
The commons_discussion_views_default_views function in modules/features/commons_discussion/commons_discussion.views_default.inc in the Drupal Commons module 6.x-2.x before 6.x-2.8 for Drupal does not properly enforce intended node access restrictions, which might allow remote attackers to obtain sensitive information via the recent comments listing.Enginsight
Vendor | Product | Version |
---|---|---|
acquia | commons | 6.x-2.4:x |
acquia | commons | 6.x-2.5:x |
acquia | commons | 6.x-2.6:x |
acquia | commons | 6.x-2.7:x |
acquia | commons | 6.x-2.x:x |
𝑥
= Vulnerable software versions
Common Weakness Enumeration
References