Filtered by vendor Autocomplete Widgets Project
Subscribe
Filtered by product Autocomplete Widgets
Subscribe
Total
1 CVE
CVE | Vendors | Products | Updated | CVSS v2 | CVSS v3 |
---|---|---|---|---|---|
CVE-2013-1973 | 1 Autocomplete Widgets Project | 1 Autocomplete Widgets | 2014-06-24 | 4.0 MEDIUM | N/A |
The autocomplete callback in Autocomplete Widgets for Text and Number Fields (autocomplete_widgets) module 6.x-1.x before 6.x-1.4 and 7.x-1.x before 7.x-1.0-rc1 does not properly handle node permissions, which allows remote authenticated users to obtain sensitive field values via unspecified vectors. |