4
CVSSv2

CVE-2009-2171

Published: 23/06/2009 Updated: 24/06/2009
CVSS v2 Base Score: 4 | Impact Score: 2.9 | Exploitability Score: 8
VMScore: 356
Vector: AV:N/AC:L/Au:S/C:P/I:N/A:N

Vulnerability Summary

Mahara 1.1 prior to 1.1.5 does not apply permission checks when saving a view that contains artefacts, which allows remote authenticated users to read another user's artefact.

Vulnerable Product Search on Vulmon Subscribe to Product

mahara mahara 1.1.1

mahara mahara 1.1.3

mahara mahara 1.1.4

mahara mahara 1.1

mahara mahara 1.1.2