7.5
CVSSv2

CVE-2009-4762

Published: 29/03/2010 Updated: 27/05/2010
CVSS v2 Base Score: 7.5 | Impact Score: 6.4 | Exploitability Score: 10
VMScore: 668
Vector: AV:N/AC:L/Au:N/C:P/I:P/A:P

Vulnerability Summary

MoinMoin 1.7.x prior to 1.7.3 and 1.8.x prior to 1.8.3 checks parent ACLs in certain inappropriate circumstances during processing of hierarchical ACLs, which allows remote malicious users to bypass intended access restrictions by requesting an item, a different vulnerability than CVE-2008-6603.

Vulnerable Product Search on Vulmon Subscribe to Product

moinmo moinmoin 1.8.2

moinmo moinmoin 1.7.1

moinmo moinmoin 1.7.2

moinmo moinmoin 1.7.0

moinmo moinmoin 1.8.0

moinmo moinmoin 1.8.1

Vendor Advisories

It was discovered that MoinMoin incorrectly handled hierarchical access control lists Users could bypass intended access controls under certain circumstances ...