Security Advisory
CVE-2012-4491
CVE vulnerability detail — eXtreme Datacenter Security Operations
Description
The Monthly Archive by Node Type module 6.x for Drupal does not properly check permissions defined by node_access modules, which allows remote attackers to access restricted nodes via unspecified vectors.