CVE Vulnerabilities

CVE-2012-2153

Published: Oct 01, 2012 | Modified: Apr 11, 2025
CVSS 3.x
N/A
Source:
NVD
CVSS 2.x
4 MEDIUM
AV:N/AC:L/Au:S/C:P/I:N/A:N
RedHat/V2
RedHat/V3
Ubuntu
MEDIUM
root.io logo minimus.io logo echo.ai logo

Drupal 7.x before 7.14 does not properly restrict access to nodes in a list when using a contributed node access module, which allows remote authenticated users with the Access the content overview page permission to read all published nodes by accessing the admin/content page.

Affected Software

NameVendorStart VersionEnd Version
DrupalDrupal7.0 (including)7.0 (including)
DrupalDrupal7.0-alpha1 (including)7.0-alpha1 (including)
DrupalDrupal7.0-alpha2 (including)7.0-alpha2 (including)
DrupalDrupal7.0-alpha3 (including)7.0-alpha3 (including)
DrupalDrupal7.0-alpha4 (including)7.0-alpha4 (including)
DrupalDrupal7.0-alpha5 (including)7.0-alpha5 (including)
DrupalDrupal7.0-alpha6 (including)7.0-alpha6 (including)
DrupalDrupal7.0-alpha7 (including)7.0-alpha7 (including)
DrupalDrupal7.0-beta1 (including)7.0-beta1 (including)
DrupalDrupal7.0-beta2 (including)7.0-beta2 (including)
DrupalDrupal7.0-beta3 (including)7.0-beta3 (including)
DrupalDrupal7.0-dev (including)7.0-dev (including)
DrupalDrupal7.0-rc1 (including)7.0-rc1 (including)
DrupalDrupal7.0-rc2 (including)7.0-rc2 (including)
DrupalDrupal7.0-rc3 (including)7.0-rc3 (including)
DrupalDrupal7.0-rc4 (including)7.0-rc4 (including)
DrupalDrupal7.1 (including)7.1 (including)
DrupalDrupal7.2 (including)7.2 (including)
DrupalDrupal7.3 (including)7.3 (including)
DrupalDrupal7.4 (including)7.4 (including)
DrupalDrupal7.5 (including)7.5 (including)
DrupalDrupal7.6 (including)7.6 (including)
DrupalDrupal7.7 (including)7.7 (including)
DrupalDrupal7.8 (including)7.8 (including)
DrupalDrupal7.9 (including)7.9 (including)
DrupalDrupal7.10 (including)7.10 (including)
DrupalDrupal7.11 (including)7.11 (including)
DrupalDrupal7.12 (including)7.12 (including)
DrupalDrupal7.13 (including)7.13 (including)
DrupalDrupal7.x-dev (including)7.x-dev (including)
Drupal5Ubuntuhardy*
Drupal6Ubuntulucid*
Drupal6Ubuntunatty*
Drupal6Ubuntuoneiric*
Drupal6Ubuntuprecise*
Drupal6Ubuntuquantal*
Drupal6Ubunturaring*
Drupal7Ubuntuprecise*
Drupal7Ubuntuupstream*

References