CVE-2012-4491 Information

Description

The Monthly Archive by Node Type module 6.x for Drupal does not properly check permissions defined by node_access modules which allows remote attackers to access restricted nodes via unspecified vectors.

Reference

http://drupal.org/node/1708198 http://www.openwall.com/lists/oss-security/2012/10/04/6 http://www.openwall.com/lists/oss-security/2012/10/07/1 http://www.securityfocus.com/bid/54768

Share on: