CVE-2012-2730 - Rheological Coordinators
Description
The Protected Node module 6.x-1.x before 6.x-1.6 for Drupal does not properly \protect node access when nodes are accessed outside of the standard node view\ which allows remote attackers to bypass intended access restrictions.
Reference
http://drupal.org/node/1258034 http://secunia.com/advisories/49509 http://drupal.org/node/1632918 http://www.securityfocus.com/bid/54001 http://www.openwall.com/lists/oss-security/2012/06/14/3 http://www.osvdb.org/82984 https://exchange.xforce.ibmcloud.com/vulnerabilities/76291