Beveiligingsadvies

CVE-2012-1590

CVE-kwetsbaarheidsdetails - eXtreme Datacenter Security Operations

Gepubliceerd 2012-10-01 00:00:00
Laatst bijgewerkt 2024-08-06 19:01:02
Toegewezen door redhat
CVSS-score geen score
Status PUBLISHED

Beschrijving

The forum list in Drupal 7.x before 7.14 does not properly check user permissions for unpublished forum posts, which allows remote authenticated users to obtain sensitive information such as the post title via the forum overview page.