TROYANOSYVIRUS
Retour aux CVEs

CVE-2012-4498

N/A

Description

The Activism module 6.x-2.x before 6.x-2.1 for Drupal does not properly restrict access to the "Campaign" content type, which might allow remote attackers to bypass access restrictions and possibly have other unspecified impact.

Details CVE

Score CVSS v3.1N/A
Publie11/2/2012
Derniere modification4/11/2025
Sourcenvd
Observations honeypot0

Produits affectes

drupal:drupalmorbus_iff:activism

Faiblesses (CWE)

CWE-264

References

http://drupal.org/node/1762152(secalert@redhat.com)
http://drupal.org/node/1762160(secalert@redhat.com)
http://drupal.org/node/1762152(af854a3a-2127-422b-91ae-364da2661108)
http://drupal.org/node/1762160(af854a3a-2127-422b-91ae-364da2661108)
http://www.openwall.com/lists/oss-security/2012/10/04/6(af854a3a-2127-422b-91ae-364da2661108)
http://www.openwall.com/lists/oss-security/2012/10/07/1(af854a3a-2127-422b-91ae-364da2661108)

Correlations IOC

Aucune correlation enregistree

This product uses data from the NVD API but is not endorsed or certified by the NVD.