Geeklog prior to 1.3.11sr3 allows remote malicious users to bypass intended access restrictions and comment on an arbitrary story or topic by guessing the story ID.
Vulnerable Product | Search on Vulmon | Subscribe to Product |
---|---|---|
geeklog geeklog 1.3.9_rc2 |
||
geeklog geeklog 1.3.9_rc3 |
||
geeklog geeklog 1.3.9_sr1 |
||
geeklog geeklog 1.3.9_sr2 |
||
geeklog geeklog 1.3.10_rc3 |
||
geeklog geeklog 1.3.11 |
||
geeklog geeklog 1.3.11_rc1 |
||
geeklog geeklog 1.3.11_sr1 |
||
geeklog geeklog 1.3.10_rc1 |
||
geeklog geeklog 1.3.8_1_sr3 |
||
geeklog geeklog 1.3.9 |
||
geeklog geeklog 1.3.10 |
||
geeklog geeklog 1.3.10_rc2 |
||
geeklog geeklog 1.3.11_sr2 |
||
geeklog geeklog 1.3.8_1_sr4 |
||
geeklog geeklog 1.3.9_rc1 |