CVE-2012-4500

EUVD-2012-4429
The Announcements module 6.x-1.x before 6.x-1.5 for Drupal allows remote authenticated users with the "access announcements" permission to bypass node access restrictions and possibly have other unspecified impact.
ProviderTypeBase ScoreAtk. VectorAtk. ComplexityPriv. RequiredVector
NISTPrimary
3.5 UNKNOWN
NETWORK
MEDIUM
AV:N/AC:M/Au:S/C:N/I:P/A:N
Base Score
CVSS 3.x
EPSS Score
Percentile: 48%
Affected Products (NVD)
VendorProductVersion
nancy_wichmannannouncements
6.x-1.0:x
nancy_wichmannannouncements
6.x-1.0:x
nancy_wichmannannouncements
6.x-1.1:x
nancy_wichmannannouncements
6.x-1.2:x
nancy_wichmannannouncements
6.x-1.3:x
nancy_wichmannannouncements
6.x-1.4:x
nancy_wichmannannouncements
6.x-1.x:x
𝑥
= Vulnerable software versions
Common Weakness Enumeration