Florian Weber Spaces module for Drupal 6.x-3.0-beta1

CPE Details

Florian Weber Spaces module for Drupal 6.x-3.0-beta1
6.x-3.0
2012-07-19
12h10 +00:00
2012-08-21
21h57 +00:00
Alerte pour un CPE
Stay informed of any changes for a specific CPE.
Notifications manage

CPE Name: cpe:2.3:a:florian_weber:spaces:6.x-3.0:beta1:*:*:*:*:*:*

Informations

Vendor

florian_weber

Product

spaces

Version

6.x-3.0

Update

beta1

Related CVE

Open and find in CVE List

CVE ID Published Description Score Severity
CVE-2013-4498 2014-05-17 18h00 +00:00 The Spaces OG submodule in the Spaces module 6.x-3.x before 6.x-3.7 for Drupal does not properly delete organic group group spaces content when using the option to move to a new group, which causes the content to be "orphaned" and allows remote authenticated users with the "access content" permission to obtain sensitive information via vectors involving a rebuild access for the site or content.
2.1
CVE-2012-2303 2012-07-18 16h00 +00:00 The Spaces module 6.x-3.x before 6.x-3.4 for Drupal does not enforce permissions on non-object pages, which allows remote attackers to obtain sensitive information and possibly have other impacts via unspecified vectors to the (1) Spaces or (2) Spaces OG module.
7.5