CVE-2012-1643

Severity CVSS v4.0:
Pending analysis
Type:
CWE-264 Permissions, Privileges, and Access Control
Publication date:
28/08/2012
Last modified:
11/04/2025

Description

The Faster Permissions module 7.x-2.x before 7.x-1.2 for Drupal does not check the "administer permissions" permission, which allows remote attackers to modify access permissions via unspecified vectors.

Vulnerable products and versions

CPE From Up to
cpe:2.3:a:jason_savino:fp:7.x-1.0:*:*:*:*:*:*:*
cpe:2.3:a:jason_savino:fp:7.x-1.1:*:*:*:*:*:*:*
cpe:2.3:a:drupal:drupal:-:*:*:*:*:*:*:*