MEDIUM
Review Board: URL processing gives unauthorized users access to review lists
Published Dec 3, 2019
4.3
MEDIUMCVSS 3.1
EPSS 1.35%
Description
Review Board: URL processing gives unauthorized users access to review lists
Affected products
-
- Version through 2013-10-08StatusaffectedConstraints-
- Version
Default status is the baseline for the product, each version can override it (e.g. patched versions marked unaffected).
| Vendor | Product | Default status | Versions | ||||||
|---|---|---|---|---|---|---|---|---|---|
| Review Board | Review Board | n/a |
|
Configuration 1
OR
- ≥ 1.6 · < 1.6.19
- ≥ 1.7 · < 1.7.15
Configuration 2
OR
- 18
- 19
- 20
No data.
No Red Hat product state for this CVE.
No package ranges for this CVE.
Remediation
No remediation recorded yet.
Weaknesses (1)
References (10)
- http://lists.fedoraproject.org/pipermail/package-announce/2013-November/120619.html x_refsource_MISCMailing ListThird Party Advisory
- http://lists.fedoraproject.org/pipermail/package-announce/2013-October/119819.html x_refsource_MISCMailing ListThird Party Advisory
- http://lists.fedoraproject.org/pipermail/package-announce/2013-October/119820.html x_refsource_MISCMailing ListThird Party Advisory
- http://lists.fedoraproject.org/pipermail/package-announce/2013-October/119830.html x_refsource_MISCMailing ListThird Party Advisory
- http://lists.fedoraproject.org/pipermail/package-announce/2013-October/119831.html x_refsource_MISCThird Party Advisory
- http://www.securityfocus.com/bid/63023 x_refsource_MISCThird Party AdvisoryVDB Entry
- https://access.redhat.com/security/cve/cve-2013-4411 x_refsource_MISCBroken Link
- https://bugzilla.redhat.com/show_bug.cgi?id=CVE-2013-4411 x_refsource_MISCIssue TrackingThird Party Advisory
- https://exchange.xforce.ibmcloud.com/vulnerabilities/88061 x_refsource_MISCThird Party AdvisoryVDB Entry
- https://security-tracker.debian.org/tracker/CVE-2013-4411 x_refsource_MISCThird Party Advisory
Change history (0)
No recorded changes yet.
Sources
CVE.org / MITRE
Status PUBLISHED
Assigner redhat
Published Dec 3, 2019
Updated Aug 6, 2024
Reserved Jun 12, 2013
Link CVE-2013-4411
CISA Vulnrichment
Updated n/a