CVE Vulnerabilities

CVE-2016-3114

Published: Apr 24, 2017 | Modified: Apr 27, 2017
CVSS 3.x
6.5
MEDIUM
Source:
NVD
CVSS:3.0/AV:N/AC:L/PR:L/UI:N/S:U/C:N/I:H/A:N
CVSS 2.x
4 MEDIUM
AV:N/AC:L/Au:S/C:N/I:P/A:N
RedHat/V2
RedHat/V3
Ubuntu

Kallithea before 0.3.2 allows remote authenticated users to edit or delete open pull requests or delete comments by leveraging read access.

Affected Software

Name Vendor Start Version End Version
Kallithea Kallithea 0.3.1 (including) 0.3.1 (including)

References