CVE-2012-1643: Jason Savino Fp

Medium severity, CVSS 5.0. EPSS: 1.5% chance of exploitation in the next 30 days.

The Faster Permissions module 7.x-2.x before 7.x-1.2 for Drupal does not check the "administer permissions" permission, which allows remote attackers to modify access permissions via unspecified vectors.

Affected products

Published 2012-08-28. Last modified 2026-06-16.