CVE-2012-4483: Acquia Commons

Medium severity, CVSS 5.0. EPSS: 1.4% chance of exploitation in the next 30 days.

The commons_discussion_views_default_views function in modules/features/commons_discussion/commons_discussion.views_default.inc in the Drupal Commons module 6.x-2.x before 6.x-2.8 for Drupal does not properly enforce intended node access restrictions, which might allow remote attackers to obtain sensitive information via the recent comments listing.

Affected products

  • Acquia Commons: version 6.x-2.4 only; version 6.x-2.5 only; version 6.x-2.6 only; version 6.x-2.7 only; version 6.x-2.x only

Published 2012-10-31. Last modified 2026-06-16.