Back to search
CVE-2015-3163
Published: Sep 6, 2017
Modified: Aug 6, 2024
PUBLISHED
Description
The admin pages for power types and key types in Beaker before 20.1 do not have any access controls, which allows remote authenticated users to modify power types and key types via navigating to $BEAKER/powertypes and $BEAKER/keytypes respectively.
| Vendor | Product | Versions |
|---|---|---|
n/a | n/a | affected n/a |
References
[oss-security] 20150507 beaker vulns fixed in version 20.1
mailing-list
x_refsource_MLIST
https://bugzilla.redhat.com/show_bug.cgi?id=1215034
x_refsource_CONFIRM
74567
vdb-entry
x_refsource_BID
Security Training
Train your team to recognize and prevent security threats with our comprehensive security awareness program.
Start TrainingVulnerability Scanning
Discover vulnerabilities in your applications and infrastructure before attackers do.
Scan Now