CVE Vulnerabilities

CVE-2006-1227

Published: Mar 14, 2006 | Modified: Oct 18, 2018
CVSS 3.x
N/A
Source:
NVD
CVSS 2.x
4.6 MEDIUM
AV:L/AC:L/Au:N/C:P/I:P/A:P
RedHat/V2
RedHat/V3
Ubuntu

Drupal 4.5.x before 4.5.8 and 4.6.x before 4.5.8, when menu.module is used to create a menu item, does not implement access control for the page that is referenced, which might allow remote attackers to access administrator pages.

Affected Software

Name Vendor Start Version End Version
Drupal Drupal 4.5.0 (including) 4.5.0 (including)
Drupal Drupal 4.5.1 (including) 4.5.1 (including)
Drupal Drupal 4.5.2 (including) 4.5.2 (including)
Drupal Drupal 4.5.3 (including) 4.5.3 (including)
Drupal Drupal 4.5.4 (including) 4.5.4 (including)
Drupal Drupal 4.5.5 (including) 4.5.5 (including)
Drupal Drupal 4.5.6 (including) 4.5.6 (including)
Drupal Drupal 4.5.7 (including) 4.5.7 (including)
Drupal Drupal 4.6.0 (including) 4.6.0 (including)
Drupal Drupal 4.6.1 (including) 4.6.1 (including)
Drupal Drupal 4.6.2 (including) 4.6.2 (including)
Drupal Drupal 4.6.3 (including) 4.6.3 (including)
Drupal Drupal 4.6.4 (including) 4.6.4 (including)
Drupal Drupal 4.6.5 (including) 4.6.5 (including)

References