2012-12-26 17:00:00
redhat
PUBLISHED
The Table of Contents module 6.x-3.x before 6.x-3.8 for Drupal does not properly check node permissions, which allows remote attackers to read a nodes headers by accessing a table of contents block.