CVE-2012-2153
Publication date 1 October 2012
Last updated 24 July 2024
Ubuntu priority
Drupal 7.x before 7.14 does not properly restrict access to nodes in a list when using a “contributed node access module,” which allows remote authenticated users with the “Access the content overview page” permission to read all published nodes by accessing the admin/content page.
Status
Package | Ubuntu Release | Status |
---|---|---|
drupal5 | ||
16.04 LTS xenial | Not in release | |
14.04 LTS trusty | Not in release | |
drupal6 | ||
16.04 LTS xenial | Not in release | |
14.04 LTS trusty | Not in release | |
drupal7 | ||
16.04 LTS xenial |
Not affected
|
|
14.04 LTS trusty |
Not affected
|
|