Unrated severityNVD Advisory· Published Feb 14, 2012· Updated Apr 29, 2026
CVE-2012-1056
CVE-2012-1056
Description
The Forward module 6.x-1.x before 6.x-1.21 and 7.x-1.x before 7.x-1.3 for Drupal does not properly enforce permissions for (1) Recent forwards, (2) Most forwarded, or (3) Dynamic blocks, which allows remote attackers to obtain node titles via unspecified vectors.
Affected products
33cpe:2.3:a:sean_robertson:forward:6.x-1.0:*:*:*:*:*:*:*+ 32 more
- cpe:2.3:a:sean_robertson:forward:6.x-1.0:*:*:*:*:*:*:*
- cpe:2.3:a:sean_robertson:forward:6.x-1.1:*:*:*:*:*:*:*
- cpe:2.3:a:sean_robertson:forward:6.x-1.10:*:*:*:*:*:*:*
- cpe:2.3:a:sean_robertson:forward:6.x-1.11:*:*:*:*:*:*:*
- cpe:2.3:a:sean_robertson:forward:6.x-1.12:*:*:*:*:*:*:*
- cpe:2.3:a:sean_robertson:forward:6.x-1.13:*:*:*:*:*:*:*
- cpe:2.3:a:sean_robertson:forward:6.x-1.14:*:*:*:*:*:*:*
- cpe:2.3:a:sean_robertson:forward:6.x-1.15:*:*:*:*:*:*:*
- cpe:2.3:a:sean_robertson:forward:6.x-1.16:*:*:*:*:*:*:*
- cpe:2.3:a:sean_robertson:forward:6.x-1.17:*:*:*:*:*:*:*
- cpe:2.3:a:sean_robertson:forward:6.x-1.18:*:*:*:*:*:*:*
- cpe:2.3:a:sean_robertson:forward:6.x-1.19:*:*:*:*:*:*:*
- cpe:2.3:a:sean_robertson:forward:6.x-1.2:*:*:*:*:*:*:*
- cpe:2.3:a:sean_robertson:forward:6.x-1.20:*:*:*:*:*:*:*
- cpe:2.3:a:sean_robertson:forward:6.x-1.3:*:*:*:*:*:*:*
- cpe:2.3:a:sean_robertson:forward:6.x-1.4:*:*:*:*:*:*:*
- cpe:2.3:a:sean_robertson:forward:6.x-1.5:*:*:*:*:*:*:*
- cpe:2.3:a:sean_robertson:forward:6.x-1.6:*:*:*:*:*:*:*
- cpe:2.3:a:sean_robertson:forward:6.x-1.7:*:*:*:*:*:*:*
- cpe:2.3:a:sean_robertson:forward:6.x-1.8:*:*:*:*:*:*:*
- cpe:2.3:a:sean_robertson:forward:6.x-1.9:*:*:*:*:*:*:*
- cpe:2.3:a:sean_robertson:forward:6.x-1.x-dev:*:*:*:*:*:*:*
- cpe:2.3:a:sean_robertson:forward:7.x-1.0:*:*:*:*:*:*:*
- cpe:2.3:a:sean_robertson:forward:7.x-1.0:alpha1:*:*:*:*:*:*
- cpe:2.3:a:sean_robertson:forward:7.x-1.0:alpha2:*:*:*:*:*:*
- cpe:2.3:a:sean_robertson:forward:7.x-1.0:alpha3:*:*:*:*:*:*
- cpe:2.3:a:sean_robertson:forward:7.x-1.0:rc1:*:*:*:*:*:*
- cpe:2.3:a:sean_robertson:forward:7.x-1.0:rc2:*:*:*:*:*:*
- cpe:2.3:a:sean_robertson:forward:7.x-1.0:rc3:*:*:*:*:*:*
- cpe:2.3:a:sean_robertson:forward:7.x-1.0:rc4:*:*:*:*:*:*
- cpe:2.3:a:sean_robertson:forward:7.x-1.1:*:*:*:*:*:*:*
- cpe:2.3:a:sean_robertson:forward:7.x-1.2:*:*:*:*:*:*:*
- cpe:2.3:a:sean_robertson:forward:7.x-1.x-dev:*:*:*:*:*:*:*
Patches
0No patches discovered yet.
Vulnerability mechanics
AI mechanics synthesis has not run for this CVE yet.
References
6- drupal.org/node/1423722nvdPatch
- drupal.org/node/1425150nvdPatchVendor Advisory
- secunia.com/advisories/47851nvdVendor Advisory
- osvdb.org/78817nvd
- www.securityfocus.com/bid/51826nvd
- exchange.xforce.ibmcloud.com/vulnerabilities/72920nvd
News mentions
0No linked articles in our index yet.