elog: unauthorized posts
| Package(s): | elog | CVE #(s): | CVE-2016-6342 | ||||||||
| Created: | September 12, 2016 | Updated: | September 14, 2016 | ||||||||
| Description: | From the Red Hat bugzilla:
It has been reported that one can post from any username entry on the logbook, with a post request and guest readable logbook, using elog 3.1.1. | ||||||||||
| Alerts: |
| ||||||||||
