- EPSS 0.15%
- Veröffentlicht 09.06.2014 19:55:09
- Zuletzt bearbeitet 12.04.2025 10:46:40
The Revisioning module 7.x-1.x before 7.x-1.6 for Drupal does not properly check node access permissions for content marked unpublished by the Scheduled module, which allows remote authenticated users to obtain sensitive information via unspecified v...
CVE-2012-1635
- EPSS 0.15%
- Veröffentlicht 28.08.2012 17:55:01
- Zuletzt bearbeitet 11.04.2025 00:51:21
The hook_node_access function in the revisioning module 7.x-1.x before 7.x-1.3 for Drupal checks the permissions of the current user even when it is called to check permissions of other users, which allows remote attackers to bypass intended access r...
CVE-2012-1060
- EPSS 0.36%
- Veröffentlicht 14.02.2012 00:55:01
- Zuletzt bearbeitet 11.04.2025 00:51:21
Multiple cross-site scripting (XSS) vulnerabilities in revisioning_theme.inc in the Taxonomy module in the Revisioning module 6.x-3.13 and other versions before 6.x-3.14 for Drupal allow remote authenticated users with certain privileges to inject ar...