CVE Database
/

CVE-2012-2303

Back to search

CVE-2012-2303

Published: Jul 18, 2012

Modified: Aug 6, 2024

PUBLISHED

Description

The Spaces module 6.x-3.x before 6.x-3.4 for Drupal does not enforce permissions on non-object pages, which allows remote attackers to obtain sensitive information and possibly have other impacts via unspecified vectors to the (1) Spaces or (2) Spaces OG module.

VendorProductVersions

n/a

n/a

affected
n/a

References

81556
vdb-entry
x_refsource_OSVDB
53252
vdb-entry
x_refsource_BID
48930
third-party-advisory
x_refsource_SECUNIA

Security Training

Train your team to recognize and prevent security threats with our comprehensive security awareness program.

Start Training

Vulnerability Scanning

Discover vulnerabilities in your applications and infrastructure before attackers do.

Scan Now