First published: Tue Jul 16 2013(Updated: )
The Commons Group module before 7.x-3.1 for Drupal, as used in the Commons module before 7.x-3.1, does not properly restrict access to groups, which allows remote attackers to post arbitrary content to groups via unspecified vectors.
Credit: secalert@redhat.com
Affected Software | Affected Version | How to fix |
---|---|---|
Acquia Commons | <=7.x-3.0 | |
Acquia Commons | =_group7.x-3.x-dev | |
Acquia Commons | =7.x-3.x-dev | |
Acquia Commons Group | <=7.x-3.0 | |
Drupal Drupal |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.