Unrated severityNVD Advisory· Published Sep 30, 2013· Updated Apr 29, 2026
CVE-2013-5965
CVE-2013-5965
Description
The Node View Permissions module 7.x-1.x before 7.x-1.2 for Drupal does not properly implement the hook_query_alter function, which might allow remote attackers to obtain sensitive information by reading a node listing.
Affected products
2cpe:2.3:a:adcisolutions:node_view_permissions:*:*:*:*:*:*:*:*+ 1 more
- cpe:2.3:a:adcisolutions:node_view_permissions:*:*:*:*:*:*:*:*range: <=7.x-1.1
- cpe:2.3:a:adcisolutions:node_view_permissions:7.x-1.0:*:*:*:*:*:*:*
Patches
0No patches discovered yet.
Vulnerability mechanics
AI mechanics synthesis has not run for this CVE yet.
References
5- drupal.org/node/2031621nvdPatch
- drupal.org/node/2076315nvdPatchVendor Advisory
- secunia.com/advisories/54550nvdVendor Advisory
- archives.neohapsis.com/archives/bugtraq/2013-08/0184.htmlnvd
- www.openwall.com/lists/oss-security/2013/09/11/9nvd
News mentions
0No linked articles in our index yet.