CVE Vulnerabilities

CVE-2010-4215

Published: Nov 17, 2010 | Modified: Aug 17, 2017
CVSS 3.x
N/A
Source:
NVD
CVSS 2.x
6.5 MEDIUM
AV:N/AC:L/Au:S/C:P/I:P/A:P
RedHat/V2
RedHat/V3
Ubuntu

UI/Manage.pm in Foswiki 1.1.0 and 1.1.1 allows remote authenticated users to gain privileges by modifying the GROUP and ALLOWTOPICCHANGE preferences in the topic preferences for Main.AdminGroup.

Affected Software

Name Vendor Start Version End Version
Foswiki Foswiki 1.1.0 (including) 1.1.0 (including)
Foswiki Foswiki 1.1.1 (including) 1.1.1 (including)

References