CVE Database
/

CVE-2012-4404

Back to search

CVE-2012-4404

Published: Sep 10, 2012

Modified: Aug 6, 2024

PUBLISHED

Description

security/__init__.py in MoinMoin 1.9 through 1.9.4 does not properly handle group names that contain virtual group names such as "All," "Known," or "Trusted," which allows remote authenticated users with virtual group membership to be treated as a member of the group.

VendorProductVersions

n/a

n/a

affected
n/a

References

USN-1604-1
vendor-advisory
x_refsource_UBUNTU
50496
third-party-advisory
x_refsource_SECUNIA
DSA-2538
vendor-advisory
x_refsource_DEBIAN
50885
third-party-advisory
x_refsource_SECUNIA
50474
third-party-advisory
x_refsource_SECUNIA

Security Training

Train your team to recognize and prevent security threats with our comprehensive security awareness program.

Start Training

Vulnerability Scanning

Discover vulnerabilities in your applications and infrastructure before attackers do.

Scan Now