The Invitation module 7.x-2.x for Drupal does not properly check permissions, which allows remote attackers to obtain sensitive information via unspecified default views.
Name | Vendor | Start Version | End Version |
---|---|---|---|
Invitation | Invitation_project | 7.x-2.0 (including) | 7.x-2.0 (including) |
Invitation | Invitation_project | 7.x-2.1 (including) | 7.x-2.1 (including) |
Drupal6 | Ubuntu | lucid | * |
Drupal6 | Ubuntu | precise | * |
Drupal6 | Ubuntu | quantal | * |
Drupal6 | Ubuntu | raring | * |
Drupal7 | Ubuntu | precise | * |
Drupal7 | Ubuntu | quantal | * |
Drupal7 | Ubuntu | raring | * |
Drupal7 | Ubuntu | saucy | * |
Drupal7 | Ubuntu | utopic | * |
Drupal7 | Ubuntu | vivid | * |
Drupal7 | Ubuntu | wily | * |
Drupal7 | Ubuntu | yakkety | * |