CVE-2012-4500

The Announcements module 6.x-1.x before 6.x-1.5 for Drupal allows remote authenticated users with the "access announcements" permission to bypass node access restrictions and possibly have other unspecified impact.
ProviderTypeBase ScoreAtk. VectorAtk. ComplexityPriv. RequiredVector
NISTNIST
3.5 UNKNOWN
NETWORK
MEDIUM
AV:N/AC:M/Au:S/C:N/I:P/A:N
redhatCNA
---
---
CVEADP
---
---
Base Score
CVSS 3.x
EPSS Score
Percentile: 56%
VendorProductVersion
nancy_wichmannannouncements
6.x-1.0:x
nancy_wichmannannouncements
6.x-1.0:x
nancy_wichmannannouncements
6.x-1.1:x
nancy_wichmannannouncements
6.x-1.2:x
nancy_wichmannannouncements
6.x-1.3:x
nancy_wichmannannouncements
6.x-1.4:x
nancy_wichmannannouncements
6.x-1.x:x
𝑥
= Vulnerable software versions
Common Weakness Enumeration