CVE Vulnerabilities

CVE-2013-4404

Published: Dec 23, 2013 | Modified: Jul 15, 2021
CVSS 3.x
N/A
Source:
NVD
CVSS 2.x
6.5 MEDIUM
AV:N/AC:L/Au:S/C:P/I:P/A:P
RedHat/V2
6.5 MODERATE
AV:N/AC:L/Au:S/C:P/I:P/A:P
RedHat/V3
Ubuntu

cumin in Red Hat Enterprise MRG Grid 2.4 does not properly enforce user roles, which allows remote authenticated users to bypass intended role restrictions and obtain sensitive information or perform privileged operations via unspecified vectors.

Affected Software

Name Vendor Start Version End Version
Enterprise_mrg Redhat 2.4 (including) 2.4 (including)
MRG for RHEL-5 v. 2 RedHat cumin-0:0.1.5787-4.el5 *
Red Hat Enterprise MRG 2 RedHat cumin-0:0.1.5787-4.el6 *
Red Hat Enterprise MRG 2 RedHat rubygems-0:1.8.23.2-1.el6 *

References