CVE Vulnerabilities

CVE-2012-1031

Published: Feb 08, 2012 | Modified: Feb 14, 2012
CVSS 3.x
N/A
Source:
NVD
CVSS 2.x
6 MEDIUM
AV:N/AC:M/Au:S/C:P/I:P/A:P
RedHat/V2
RedHat/V3
Ubuntu

Unspecified vulnerability in EPiServer CMS 5 and 6 through 6R2, in certain configurations using Forms Authentication, allows remote authenticated users to obtain WebAdmins access by leveraging Edit Mode privileges, a different vulnerability than CVE-2011-3416 and CVE-2011-3417.

Affected Software

Name Vendor Start Version End Version
Episerver_cms Episerver 5.1.422.4 (including) 5.1.422.4 (including)
Episerver_cms Episerver 5.1.422.122 (including) 5.1.422.122 (including)
Episerver_cms Episerver 5.1.422.256 (including) 5.1.422.256 (including)
Episerver_cms Episerver 5.1.422.267 (including) 5.1.422.267 (including)
Episerver_cms Episerver 5.2.375.7 (including) 5.2.375.7 (including)
Episerver_cms Episerver 5.2.375.133 (including) 5.2.375.133 (including)
Episerver_cms Episerver 5.2.375.236 (including) 5.2.375.236 (including)
Episerver_cms Episerver 6.0.530.0 (including) 6.0.530.0 (including)
Episerver_cms Episerver 6.1.379.0 (including) 6.1.379.0 (including)

References