Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
The Node View Permissions module 7.x-1.x before 7.x-1.2 for Drupal does not properly implement the hook_query_alter function, which might allow remote attackers to obtain sensitive information by reading a node listing.
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
Drupal Node View Permissions模块安全绕过漏洞
Vulnerability Description
Drupal是Drupal社区所维护的一套用PHP语言开发的免费、开源的内容管理系统。Node View Permissions是其中的一个权限管理模块。 Drupal平台下的Node View Permissions模块7.x-1.1及之前的版本中存在安全绕过漏洞,该漏洞源于程序没有正确实现hook_query_alter函数。远程攻击者可通过读取节点列表利用该漏洞获取敏感信息。
CVSS Information
N/A
Vulnerability Type
N/A