6
CVSSv2

CVE-2012-4404

Published: 10/09/2012 Updated: 19/04/2013
CVSS v2 Base Score: 6 | Impact Score: 6.4 | Exploitability Score: 6.8
VMScore: 534
Vector: AV:N/AC:M/Au:S/C:P/I:P/A:P

Vulnerability Summary

security/__init__.py in MoinMoin 1.9 up to and including 1.9.4 does not properly handle group names that contain virtual group names such as "All," "Known," or "Trusted," which allows remote authenticated users with virtual group membership to be treated as a member of the group.

Vulnerable Product Search on Vulmon Subscribe to Product

moinmo moinmoin 1.9.0

moinmo moinmoin 1.9.1

moinmo moinmoin 1.9.2

moinmo moinmoin 1.9.3

moinmo moinmoin 1.9.4

Vendor Advisories

Several security issues were fixed in MoinMoin ...