CVE-2012-4404

Publication date

2012-09-10 22:00:00

Family

redhat

State

PUBLISHED

Description

security/__init__.py in MoinMoin 1.9 through 1.9.4 does not properly handle group names that contain virtual group names such as "All," "Known," or "Trusted," which allows remote authenticated users with virtual group membership to be treated as a member of the group.