The default views in the Organic Groups (OG) module 6.x-2.x before 6.x-2.4 for Drupal do not properly check permissions when all users have the "access content" permission removed, which allows remote attackers to bypass access restrictions and possibly have other unspecified impact.
Metrics
Affected Vendors & Products
References
History
No history.
MITRE
Status: PUBLISHED
Assigner: redhat
Published: 2012-06-27T00:00:00
Updated: 2024-08-06T19:42:32.441Z
Reserved: 2012-05-14T00:00:00
Link: CVE-2012-2721
Vulnrichment
No data.
NVD
Status : Modified
Published: 2012-06-27T00:55:04.957
Modified: 2024-11-21T01:39:30.400
Link: CVE-2012-2721
Redhat
No data.