CVE Vulnerabilities

CVE-2007-6383

Published: Dec 15, 2007 | Modified: Mar 08, 2011
CVSS 3.x
N/A
Source:
NVD
CVSS 2.x
5.5 MEDIUM
AV:N/AC:L/Au:S/C:P/I:P/A:N
RedHat/V2
RedHat/V3
Ubuntu

The DAV component in Chandler Server (Cosmo) before 0.10.1 does not check resource creation permissions, which allows remote authenticated users to create arbitrary resources in another users home collection.

Affected Software

Name Vendor Start Version End Version
Chandler_server Chandler_project * 0.10 (including)

References