NVD List
| Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
|---|---|---|---|---|---|---|---|---|---|
| 27913 | CVE-2015-7230 | The Workbench Email module 7.x-3.x before 7.x-3.4 for Drupal allows remote authenticated users with certain permissions to bypass node and field validation by saving a node. | 2 | 3.5 | Low | 2017-01-19 | 2015-09-21 | View | |
| 27912 | CVE-2015-7229 | The Twitter module 6.x-5.x before 6.x-5.2, 7.x-5.x before 7.x-5.9, and 7.x-6.x before 7.x-6.0 for Drupal does not properly check access permissions, which allows remote authenticated users to post tweets to arbitrary accounts by leveraging the (1) "post to twitter" permission or change the options for arbitrary attached accounts by leveraging the (2) "add twitter accounts" or (3) "add authenticated twitter accounts" permission. | 2 | 3.5 | Low | 2017-01-19 | 2015-09-21 | View | |
| 27911 | CVE-2015-7228 | The RESTful module 7.x-1.x before 7.x-1.3 for Drupal does not properly cache pages of authenticated users when using non-cookie authentication providers, which allows remote attackers to obtain sensitive information via unspecified vectors. | 2 | 5 | Medium | 2017-01-19 | 2015-09-21 | View | |
| 27910 | CVE-2015-7227 | The Fieldable Panels Panes module 7.x-1.x before 7.x-1.7 for Drupal does not properly check permissions to edit Fieldable Panels Panes entities, which allows remote authenticated users to edit panes by leveraging permissions to edit panels. | 2 | 3.5 | Low | 2017-01-19 | 2015-09-21 | View | |
| 27909 | CVE-2015-7226 | The Administration Views module 7.x-1.x before 7.x-1.5 for Drupal checks access permissions based on the router path from the view instead of the display property, which allows remote attackers to obtain sensitive information via vectors related to the access handler. | 2 | 5 | Medium | 2017-01-19 | 2016-11-28 | View |
Page 2768 of 17672, showing 5 records out of 88360 total, starting on record 13836, ending on 13840