Security Advisory
CVE-2012-2730
CVE vulnerability detail - eXtreme Datacenter Security Operations
Description
The Protected Node module 6.x-1.x before 6.x-1.6 for Drupal does not properly "protect node access when nodes are accessed outside of the standard node view," which allows remote attackers to bypass intended access restrictions.