Security Advisory

CVE-2010-1191

CVE vulnerability detail - eXtreme Datacenter Security Operations

Published 2010-03-31 17:35:00
Last updated 2024-08-07 01:14:06
Assigner mitre
CVSS score not scored
State PUBLISHED

Description

Sahana disaster management system 0.6.2.2, and possibly other versions, allows remote attackers to bypass intended access restrictions and disable administrator authentication via a direct request to stream.php in an acl_enable_acl action to the admin module.