Unspecified vulnerability in EPiServer CMS 5 and 6 through 6R2, in certain configurations using Forms Authentication, allows remote authenticated users to obtain WebAdmins access by leveraging Edit Mode privileges, a different vulnerability than CVE-2011-3416 and CVE-2011-3417.
Name | Vendor | Start Version | End Version |
---|---|---|---|
Episerver_cms | Episerver | 5.1.422.4 (including) | 5.1.422.4 (including) |
Episerver_cms | Episerver | 5.1.422.122 (including) | 5.1.422.122 (including) |
Episerver_cms | Episerver | 5.1.422.256 (including) | 5.1.422.256 (including) |
Episerver_cms | Episerver | 5.1.422.267 (including) | 5.1.422.267 (including) |
Episerver_cms | Episerver | 5.2.375.7 (including) | 5.2.375.7 (including) |
Episerver_cms | Episerver | 5.2.375.133 (including) | 5.2.375.133 (including) |
Episerver_cms | Episerver | 5.2.375.236 (including) | 5.2.375.236 (including) |
Episerver_cms | Episerver | 6.0.530.0 (including) | 6.0.530.0 (including) |
Episerver_cms | Episerver | 6.1.379.0 (including) | 6.1.379.0 (including) |