|
|
| |
|
| |
moin: multiple vulnerabilities
| Package(s): | moin |
CVE #(s): | CVE-2007-2637
CVE-2008-0782
CVE-2008-1098
CVE-2008-1099
|
| Created: | March 10, 2008 |
Updated: | January 30, 2009 |
| Description: |
From the Debian advisory:
CVE-2007-2637:
Access control lists for calendars and includes were
insufficiently enforced, which could lead to information
disclosure.
CVE-2008-0782:
A directory traversal vulnerability in cookie handling could
lead to local denial of service by overwriting files.
CVE-2008-1098:
Cross-site-scripting vulnerabilities have been discovered in
the GUI editor formatter and the code to delete pages.
CVE-2008-1099:
The macro code validates access control lists insufficiently,
which could lead to information disclosure.
|
| Alerts: |
|
( Log in to post comments)
|
|
|