1 results (0.003 seconds)

CVSS: 9.1EPSS: 0%CPEs: 4EXPL: 0

18 Jun 2008 — The Node Hierarchy module 5.x before 5.x-1.1 and 6.x before 6.x-1.0 for Drupal does not properly implement access checks, which allows remote attackers with "access content" permissions to bypass restrictions and modify the node hierarchy via unspecified attack vectors. El módulo Node Hierarchy 5.x anterior a 5.x-1.1 y 6.x anteriores a 6.x-1.0 para Drupal no implementa adecuadamente los controles de acceso, lo que permite a atacantes remotos con permiso de "acceso al contenido", evitar las restricciones y m... • http://drupal.org/node/269473 • CWE-264: Permissions, Privileges, and Access Controls •