CVE-2009-2171

Publication date

2009-06-23 16:00:00

Family

mitre

State

PUBLISHED

Description

Mahara 1.1 before 1.1.5 does not apply permission checks when saving a view that contains artefacts, which allows remote authenticated users to read another users artefact.