CVE-2010-0005

Publication date

2010-01-29 18:00:00

Family

redhat

State

PUBLISHED

Description

query.py in the query interface in ViewVC before 1.1.3 does not reject configurations that specify an unsupported authorizer for a root, which might allow remote attackers to bypass intended access restrictions via a query.