Froxlor through 0.9.39.5 has Incorrect Access Control for tickets not owned by the current user.
References
Link | Resource |
---|---|
https://github.com/Froxlor/Froxlor/commit/aa881560cc996c38cbf8c20ee62854e27f72c73c | Patch Third Party Advisory |
https://github.com/Froxlor/Froxlor/commit/aa881560cc996c38cbf8c20ee62854e27f72c73c | Patch Third Party Advisory |
Configurations
History
21 Nov 2024, 03:45
Type | Values Removed | Values Added |
---|---|---|
References | () https://github.com/Froxlor/Froxlor/commit/aa881560cc996c38cbf8c20ee62854e27f72c73c - Patch, Third Party Advisory |
Information
Published : 2018-06-22 12:29
Updated : 2024-11-21 03:45
NVD link : CVE-2018-12642
Mitre link : CVE-2018-12642
CVE.ORG link : CVE-2018-12642
JSON object : View
Products Affected
froxlor
- froxlor
CWE
CWE-732
Incorrect Permission Assignment for Critical Resource