VYPR
Unrated severityNVD Advisory· Published Feb 14, 2012· Updated Apr 29, 2026

CVE-2012-1056

CVE-2012-1056

Description

The Forward module 6.x-1.x before 6.x-1.21 and 7.x-1.x before 7.x-1.3 for Drupal does not properly enforce permissions for (1) Recent forwards, (2) Most forwarded, or (3) Dynamic blocks, which allows remote attackers to obtain node titles via unspecified vectors.

Affected products

33
  • cpe:2.3:a:sean_robertson:forward:6.x-1.0:*:*:*:*:*:*:*+ 32 more
    • cpe:2.3:a:sean_robertson:forward:6.x-1.0:*:*:*:*:*:*:*
    • cpe:2.3:a:sean_robertson:forward:6.x-1.1:*:*:*:*:*:*:*
    • cpe:2.3:a:sean_robertson:forward:6.x-1.10:*:*:*:*:*:*:*
    • cpe:2.3:a:sean_robertson:forward:6.x-1.11:*:*:*:*:*:*:*
    • cpe:2.3:a:sean_robertson:forward:6.x-1.12:*:*:*:*:*:*:*
    • cpe:2.3:a:sean_robertson:forward:6.x-1.13:*:*:*:*:*:*:*
    • cpe:2.3:a:sean_robertson:forward:6.x-1.14:*:*:*:*:*:*:*
    • cpe:2.3:a:sean_robertson:forward:6.x-1.15:*:*:*:*:*:*:*
    • cpe:2.3:a:sean_robertson:forward:6.x-1.16:*:*:*:*:*:*:*
    • cpe:2.3:a:sean_robertson:forward:6.x-1.17:*:*:*:*:*:*:*
    • cpe:2.3:a:sean_robertson:forward:6.x-1.18:*:*:*:*:*:*:*
    • cpe:2.3:a:sean_robertson:forward:6.x-1.19:*:*:*:*:*:*:*
    • cpe:2.3:a:sean_robertson:forward:6.x-1.2:*:*:*:*:*:*:*
    • cpe:2.3:a:sean_robertson:forward:6.x-1.20:*:*:*:*:*:*:*
    • cpe:2.3:a:sean_robertson:forward:6.x-1.3:*:*:*:*:*:*:*
    • cpe:2.3:a:sean_robertson:forward:6.x-1.4:*:*:*:*:*:*:*
    • cpe:2.3:a:sean_robertson:forward:6.x-1.5:*:*:*:*:*:*:*
    • cpe:2.3:a:sean_robertson:forward:6.x-1.6:*:*:*:*:*:*:*
    • cpe:2.3:a:sean_robertson:forward:6.x-1.7:*:*:*:*:*:*:*
    • cpe:2.3:a:sean_robertson:forward:6.x-1.8:*:*:*:*:*:*:*
    • cpe:2.3:a:sean_robertson:forward:6.x-1.9:*:*:*:*:*:*:*
    • cpe:2.3:a:sean_robertson:forward:6.x-1.x-dev:*:*:*:*:*:*:*
    • cpe:2.3:a:sean_robertson:forward:7.x-1.0:*:*:*:*:*:*:*
    • cpe:2.3:a:sean_robertson:forward:7.x-1.0:alpha1:*:*:*:*:*:*
    • cpe:2.3:a:sean_robertson:forward:7.x-1.0:alpha2:*:*:*:*:*:*
    • cpe:2.3:a:sean_robertson:forward:7.x-1.0:alpha3:*:*:*:*:*:*
    • cpe:2.3:a:sean_robertson:forward:7.x-1.0:rc1:*:*:*:*:*:*
    • cpe:2.3:a:sean_robertson:forward:7.x-1.0:rc2:*:*:*:*:*:*
    • cpe:2.3:a:sean_robertson:forward:7.x-1.0:rc3:*:*:*:*:*:*
    • cpe:2.3:a:sean_robertson:forward:7.x-1.0:rc4:*:*:*:*:*:*
    • cpe:2.3:a:sean_robertson:forward:7.x-1.1:*:*:*:*:*:*:*
    • cpe:2.3:a:sean_robertson:forward:7.x-1.2:*:*:*:*:*:*:*
    • cpe:2.3:a:sean_robertson:forward:7.x-1.x-dev:*:*:*:*:*:*:*

Patches

0

No patches discovered yet.

Vulnerability mechanics

AI mechanics synthesis has not run for this CVE yet.

References

6

News mentions

0

No linked articles in our index yet.