CVE Vulnerabilities

CVE-2008-0701

Published: Feb 12, 2008 | Modified: Apr 09, 2025
CVSS 3.x
N/A
Source:
NVD
CVSS 2.x
5 MEDIUM
AV:N/AC:L/Au:N/C:N/I:P/A:N
RedHat/V2
RedHat/V3
Ubuntu
root.io logo minimus.io logo echo.ai logo

ActivationHandler in Magnolia CE 3.5.x before 3.5.4 does not check permissions during importing, which allows remote attackers to have an unknown impact via activation of a new item, possibly involving addition of arbitrary new content.

Affected Software

NameVendorStart VersionEnd Version
CeMagnolia3.5.1 (including)3.5.1 (including)
CeMagnolia3.5.2 (including)3.5.2 (including)
CeMagnolia3.5.3 (including)3.5.3 (including)

References