CVE-2013-4379: Sebastien Corbin Make Meeting Scheduler Module

Medium severity, CVSS 6.4. EPSS: 1.4% chance of exploitation in the next 30 days.

The Make Meeting Scheduler module 6.x-1.x before 6.x-1.3 for Drupal allows remote attackers to bypass intended access restrictions for a poll via a direct request to the node's URL instead of the hashed URL.

Affected products

  • Sebastien Corbin Make Meeting Scheduler Module: version 6.x-1.0 only; version 6.x-1.1 only; version 6.x-1.2 only; version 6.x-1.x only

Published 2013-10-09. Last modified 2026-06-16.