CVE-2008-2771

The Node Hierarchy module 5.x before 5.x-1.1 and 6.x before 6.x-1.0 for Drupal does not properly implement access checks, which allows remote attackers with "access content" permissions to bypass restrictions and modify the node hierarchy via unspecified attack vectors.
Advertisement

NeevaHost hosting service

Configurations

Configuration 1 (hide)

OR cpe:2.3:a:drupal:drupal:5.0:*:*:*:*:*:*:*
cpe:2.3:a:drupal:drupal:6.0:*:*:*:*:*:*:*
cpe:2.3:a:drupal:node_hierarchy_module:5:*:*:*:*:*:*:*
cpe:2.3:a:drupal:node_hierarchy_module:6:*:*:*:*:*:*:*

Information

Published : 2008-06-18 15:41

Updated : 2017-08-07 18:31


NVD link : CVE-2008-2771

Mitre link : CVE-2008-2771


JSON object : View

CWE
CWE-264

Permissions, Privileges, and Access Controls

Advertisement

dedicated server usa

Products Affected

drupal

  • drupal
  • node_hierarchy_module