CVE-2007-6383

The DAV component in Chandler Server (Cosmo) before 0.10.1 does not check resource creation permissions, which allows remote authenticated users to create arbitrary resources in another user's home collection.
Configurations

Configuration 1 (hide)

cpe:2.3:a:chandler_project:chandler_server:*:*:*:*:*:*:*:*

History

No history.

Information

Published : 2007-12-15 02:46

Updated : 2024-02-28 11:01


NVD link : CVE-2007-6383

Mitre link : CVE-2007-6383

CVE.ORG link : CVE-2007-6383


JSON object : View

Products Affected

chandler_project

  • chandler_server
CWE
CWE-264

Permissions, Privileges, and Access Controls