NVD List
| Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
|---|---|---|---|---|---|---|---|---|---|
| 27909 | CVE-2015-7226 | The Administration Views module 7.x-1.x before 7.x-1.5 for Drupal checks access permissions based on the router path from the view instead of the display property, which allows remote attackers to obtain sensitive information via vectors related to the access handler. | 2 | 5 | Medium | 2017-01-19 | 2016-11-28 | View | |
| 27910 | CVE-2015-7227 | The Fieldable Panels Panes module 7.x-1.x before 7.x-1.7 for Drupal does not properly check permissions to edit Fieldable Panels Panes entities, which allows remote authenticated users to edit panes by leveraging permissions to edit panels. | 2 | 3.5 | Low | 2017-01-19 | 2015-09-21 | View | |
| 27911 | CVE-2015-7228 | The RESTful module 7.x-1.x before 7.x-1.3 for Drupal does not properly cache pages of authenticated users when using non-cookie authentication providers, which allows remote attackers to obtain sensitive information via unspecified vectors. | 2 | 5 | Medium | 2017-01-19 | 2015-09-21 | View | |
| 27912 | CVE-2015-7229 | The Twitter module 6.x-5.x before 6.x-5.2, 7.x-5.x before 7.x-5.9, and 7.x-6.x before 7.x-6.0 for Drupal does not properly check access permissions, which allows remote authenticated users to post tweets to arbitrary accounts by leveraging the (1) "post to twitter" permission or change the options for arbitrary attached accounts by leveraging the (2) "add twitter accounts" or (3) "add authenticated twitter accounts" permission. | 2 | 3.5 | Low | 2017-01-19 | 2015-09-21 | View | |
| 27913 | CVE-2015-7230 | The Workbench Email module 7.x-3.x before 7.x-3.4 for Drupal allows remote authenticated users with certain permissions to bypass node and field validation by saving a node. | 2 | 3.5 | Low | 2017-01-19 | 2015-09-21 | View |
Page 14905 of 17672, showing 5 records out of 88360 total, starting on record 74521, ending on 74525