CVE Vulnerabilities

CVE-2006-1227

Published: Mar 14, 2006 | Modified: Oct 18, 2018
CVSS 3.x
N/A
Source:
NVD
CVSS 2.x
4.6 MEDIUM
AV:L/AC:L/Au:N/C:P/I:P/A:P
RedHat/V2
RedHat/V3
Ubuntu
UNTRIAGED

Drupal 4.5.x before 4.5.8 and 4.6.x before 4.5.8, when menu.module is used to create a menu item, does not implement access control for the page that is referenced, which might allow remote attackers to access administrator pages.

Affected Software

Name Vendor Start Version End Version
Drupal Drupal 4.5.0 (including) 4.5.0 (including)
Drupal Drupal 4.5.1 (including) 4.5.1 (including)
Drupal Drupal 4.5.2 (including) 4.5.2 (including)
Drupal Drupal 4.5.3 (including) 4.5.3 (including)
Drupal Drupal 4.5.4 (including) 4.5.4 (including)
Drupal Drupal 4.5.5 (including) 4.5.5 (including)
Drupal Drupal 4.5.6 (including) 4.5.6 (including)
Drupal Drupal 4.5.7 (including) 4.5.7 (including)
Drupal Drupal 4.6.0 (including) 4.6.0 (including)
Drupal Drupal 4.6.1 (including) 4.6.1 (including)
Drupal Drupal 4.6.2 (including) 4.6.2 (including)
Drupal Drupal 4.6.3 (including) 4.6.3 (including)
Drupal Drupal 4.6.4 (including) 4.6.4 (including)
Drupal Drupal 4.6.5 (including) 4.6.5 (including)
Drupal Ubuntu dapper *
Drupal Ubuntu edgy *
Drupal Ubuntu feisty *

References