Rik de Boer Revisioning module for Drupal 7.x-1.0 beta6

CPE Details

Rik de Boer Revisioning module for Drupal 7.x-1.0 beta6
7.x-1.0
2012-08-29
11h19 +00:00
2012-08-31
16h16 +00:00
Alerte pour un CPE
Stay informed of any changes for a specific CPE.
Notifications manage

CPE Name: cpe:2.3:a:rik_de_boer:revisioning:7.x-1.0:beta6:*:*:*:*:*:*

Informations

Vendor

rik_de_boer

Product

revisioning

Version

7.x-1.0

Update

beta6

Related CVE

Open and find in CVE List

CVE ID Published Description Score Severity
CVE-2013-4597 2014-06-09 17h00 +00:00 The Revisioning module 7.x-1.x before 7.x-1.6 for Drupal does not properly check node access permissions for content marked unpublished by the Scheduled module, which allows remote authenticated users to obtain sensitive information via unspecified vectors.
4
CVE-2012-1635 2012-08-28 16h00 +00:00 The hook_node_access function in the revisioning module 7.x-1.x before 7.x-1.3 for Drupal checks the permissions of the current user even when it is called to check permissions of other users, which allows remote attackers to bypass intended access restrictions, as demonstrated when using the XML sitemap module to obtain sensitive information about unpublished content.
6.4