CVE Vulnerabilities

CVE-2012-4500

Published: Oct 31, 2012 | Modified: Mar 02, 2013
CVSS 3.x
N/A
Source:
NVD
CVSS 2.x
3.5 LOW
AV:N/AC:M/Au:S/C:N/I:P/A:N
RedHat/V2
RedHat/V3
Ubuntu

The Announcements module 6.x-1.x before 6.x-1.5 for Drupal allows remote authenticated users with the access announcements permission to bypass node access restrictions and possibly have other unspecified impact.

Affected Software

Name Vendor Start Version End Version
Announcements Nancy_wichmann 6.x-1.0 (including) 6.x-1.0 (including)
Announcements Nancy_wichmann 6.x-1.0-beta (including) 6.x-1.0-beta (including)
Announcements Nancy_wichmann 6.x-1.1 (including) 6.x-1.1 (including)
Announcements Nancy_wichmann 6.x-1.2 (including) 6.x-1.2 (including)
Announcements Nancy_wichmann 6.x-1.3 (including) 6.x-1.3 (including)
Announcements Nancy_wichmann 6.x-1.4 (including) 6.x-1.4 (including)
Announcements Nancy_wichmann 6.x-1.x-dev (including) 6.x-1.x-dev (including)

References