Monster Menus Module Project Monster Menus (monster_menus) 7.x-1.4 for Drupal

CPE Details

Monster Menus Module Project Monster Menus (monster_menus) 7.x-1.4 for Drupal
7.x-1.4
2013-08-22
13h44 +00:00
2013-11-20
16h38 +00:00
Alerte pour un CPE
Restez informé de toutes modifications pour un CPE spécifique.
Gestion des notifications

CPE Name: cpe:2.3:a:monster_menus_module_project:monster_menus:7.x-1.4:*:*:*:*:*:*:*

Informations

Vendor

monster_menus_module_project

Product

monster_menus

Version

7.x-1.4

Related CVE

Open and find in CVE List

CVE ID Publié Description Score Gravité
CVE-2015-8095 2015-11-09 16h00 +00:00 The recycle bin feature in the Monster Menus module 7.x-1.21 before 7.x-1.24 for Drupal does not properly remove nodes from view, which allows remote attackers to obtain sensitive information via an unspecified URL pattern.
5
CVE-2013-4504 2014-05-13 13h00 +00:00 The Monster Menus module 7.x-1.x before 7.x-1.15 allows remote attackers to read arbitrary node comments via a crafted URL.
2.6
CVE-2013-4229 2013-08-21 12h00 +00:00 Cross-site scripting (XSS) vulnerability in the Monster Menus module 7.x-1.x before 7.x-1.12 for Drupal allows remote authenticated users with permissions to add pages to inject arbitrary web script or HTML via a title in the page settings.
2.1
CVE-2013-4230 2013-08-21 12h00 +00:00 The mm_webform submodule in the Monster Menus module 6.x-6.x before 6.x-6.61 and 7.x-1.x before 7.x-1.13 for Drupal does not properly restrict access to webform submissions, which allows remote authenticated users with the "Who can read data submitted to this webform" permission to delete arbitrary submissions via unspecified vectors.
6