First published: Wed Jul 11 2007(Updated: )
The Print module before 4.7-1.0 and 5.x before 5.x-1.2 for Drupal allows remote attackers to read restricted posts in (1) Organic Groups, (2) Taxonomy Access Control, (3) Taxonomy Access Lite, and other unspecified node access modules, via modified URL arguments.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Drupal Print | <=4.7 | |
Drupal Print | <=5.x-1.1 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2007-3689 has been classified as a security vulnerability that allows unauthorized access to restricted posts.
To mitigate CVE-2007-3689, you should upgrade the Print module to versions 4.7-1.0 or 5.x-1.2 or later.
CVE-2007-3689 affects the Print module versions prior to 4.7-1.0 and 5.x versions before 5.x-1.2.
Remote attackers can exploit CVE-2007-3689 to read restricted posts available through certain node access modules.
Drupal installations using the affected versions of the Print module are vulnerable due to CVE-2007-3689.