Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
Drupal 6.x before 6.x-2.6, a module for Drupal, allows remote authenticated users to bypass access restrictions and (1) read unpublished content from anonymous users when a view is already configured to display the content, and (2) read private content in generated queries.
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
Angrydonuts Views模块安全绕过和访问控制漏洞
Vulnerability Description
Drupal的Views模块6.x-2.6版本之前的6.x版本,远程认证用户可以绕过访问权限制并(1)在一个核查操作被设置到展示文件内容时,从匿名用户读取未发布内容,或者(2)读取相关询问操作中的私密信息。
CVSS Information
N/A
Vulnerability Type
N/A