Beveiligingsadvies

CVE-2020-9387

CVE-kwetsbaarheidsdetails - eXtreme Datacenter Security Operations

Gepubliceerd 2020-04-30 12:46:59
Laatst bijgewerkt 2024-08-04 10:26:16
Toegewezen door mitre
CVSS-score geen score
Status PUBLISHED

Beschrijving

In Mahara 19.04 before 19.04.5 and 19.10 before 19.10.3, account details are shared in the Elasticsearch results for accounts that are not accessible when the config setting 'Isolated institutions' is turned on.