CVE-2010-3093

Publication date

2010-09-21 19:00:00

Family

redhat

State

PUBLISHED

Description

The comment module in Drupal 5.x before 5.23 and 6.x before 6.18 allows remote authenticated users with certain privileges to bypass intended access restrictions and reinstate removed comments via a crafted URL, related to an "unpublishing bypass" issue.