The Listhandler module 6.x-1.x prior to 6.x-1.1 for Drupal does not properly check permissions when importing emails, which allows remote comment authors to bypass access restrictions and possibly have other unspecified impact.
Vulnerable Product | Search on Vulmon | Subscribe to Product |
---|---|---|
philip_ludlam listhandler 6.x-1.0 |