Vulnerability Name: | CVE-2004-0708 (CCN-16465) | ||||||||
Assigned: | 2004-06-18 | ||||||||
Published: | 2004-06-18 | ||||||||
Updated: | 2017-07-11 | ||||||||
Summary: | MoinMoin 1.2.1 and earlier allows remote attackers to gain privileges by creating a user with the same name as an existing group that has higher privileges. | ||||||||
CVSS v3 Severity: | 7.3 High (CCN CVSS v3.1 Vector: CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:L/A:L)
| ||||||||
CVSS v2 Severity: | 7.5 High (CVSS v2 Vector: AV:N/AC:L/Au:N/C:P/I:P/A:P)
| ||||||||
Vulnerability Type: | CWE-Other | ||||||||
Vulnerability Consequences: | Gain Access | ||||||||
References: | Source: MITRE Type: CNA CVE-2004-0708 Source: CCN Type: SA11807 MoinMoin Administrative Group Name Privilege Escalation Vulnerability Source: SECUNIA Type: UNKNOWN 11807 Source: CCN Type: SourceForge.net Project: MoinMoin: File List Source: CONFIRM Type: UNKNOWN http://sourceforge.net/tracker/index.php?func=detail&aid=948103&group_id=8482&atid=108482 Source: CCN Type: GLSA-200407-09 MoinMoin: Group ACL bypass Source: GENTOO Type: Patch, Vendor Advisory GLSA-200407-09 Source: MISC Type: UNKNOWN http://www.osvdb.org/6704 Source: CCN Type: OSVDB ID: 6704 MoinMoin Group ACL Bypass Source: BID Type: Patch, Vendor Advisory 10568 Source: CCN Type: BID-10568 MoinMoin Group Name Privilege Escalation Vulnerability Source: XF Type: UNKNOWN moinmoin-gain-admin-access(16465) Source: XF Type: UNKNOWN moinmoin-gain-admin-access(16465) | ||||||||
Vulnerable Configuration: | Configuration 1:![]() | ||||||||
BACK |