cumin in Red Hat Enterprise MRG Grid 2.4 does not properly enforce user roles, which allows remote authenticated users to bypass intended role restrictions and obtain sensitive information or perform privileged operations via unspecified vectors.
Name | Vendor | Start Version | End Version |
---|---|---|---|
Enterprise_mrg | Redhat | 2.4 (including) | 2.4 (including) |
MRG for RHEL-5 v. 2 | RedHat | cumin-0:0.1.5787-4.el5 | * |
Red Hat Enterprise MRG 2 | RedHat | cumin-0:0.1.5787-4.el6 | * |
Red Hat Enterprise MRG 2 | RedHat | rubygems-0:1.8.23.2-1.el6 | * |