CVE-2011-2774
Published Nov 15, 2011
Last updated 13 years ago
Overview
- Description
- The "Reply to message" feature in Mahara 1.3.x and 1.4.x before 1.4.1 allows remote authenticated users to read the messages of a different user via a modified replyto parameter.
- Source
- cve@mitre.org
- NVD status
- Analyzed
Social media
- Hype score
- Not currently trending
Risk scores
CVSS 2.0
- Type
- Primary
- Base score
- 4
- Impact score
- 2.9
- Exploitability score
- 8
- Vector string
- AV:N/AC:L/Au:S/C:P/I:N/A:N
Weaknesses
- nvd@nist.gov
- CWE-200
Configurations
[ { "nodes": [ { "negate": false, "cpeMatch": [ { "criteria": "cpe:2.3:a:mahara:mahara:1.3.0:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "1C602276-C0AE-46EC-972E-0D32C31AEFA4" }, { "criteria": "cpe:2.3:a:mahara:mahara:1.3.0:beta1:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "69B261E9-9F73-442C-A234-8E95A72BE0F6" }, { "criteria": "cpe:2.3:a:mahara:mahara:1.3.0:beta2:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "71E57083-FAC5-4F98-AFB4-7449D38396FA" }, { "criteria": "cpe:2.3:a:mahara:mahara:1.3.0:beta3:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "8DCBBD59-FB74-420C-A652-7B392A0DA468" }, { "criteria": "cpe:2.3:a:mahara:mahara:1.3.0:beta4:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "F0626B4E-1A96-4FD3-B3A9-A99B4DEC52EA" }, { "criteria": "cpe:2.3:a:mahara:mahara:1.3.0:rc1:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "B54F4801-9C4D-47CA-AE0E-022AEA212D1C" }, { "criteria": "cpe:2.3:a:mahara:mahara:1.3.1:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "4E7BED57-573D-4F3E-923A-C7ECF2C7B2F8" }, { "criteria": "cpe:2.3:a:mahara:mahara:1.3.2:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "B41ED313-9CB3-4BBB-9FAF-737FFE7CBD9C" }, { "criteria": "cpe:2.3:a:mahara:mahara:1.3.3:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "0262773C-58A6-4706-B5A2-5C60EC798A91" }, { "criteria": "cpe:2.3:a:mahara:mahara:1.3.4:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "F9525B6E-A870-499E-9E73-FEBB3880ADC1" }, { "criteria": "cpe:2.3:a:mahara:mahara:1.3.5:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "8CF82733-11FD-41CB-9D5C-A81D891AD57D" }, { "criteria": "cpe:2.3:a:mahara:mahara:1.3.6:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "8BC3515E-0923-40D8-A026-833DCAE47648" }, { "criteria": "cpe:2.3:a:mahara:mahara:1.3.7:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "A17F7E30-71E4-41FC-883C-9E5DBF659A9D" }, { "criteria": "cpe:2.3:a:mahara:mahara:1.4:rc1:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "E59B9197-F3A7-48FE-B4EB-66E77477F119" }, { "criteria": "cpe:2.3:a:mahara:mahara:1.4:rc2:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "76ADB798-ECDF-400A-812B-8DA40DE652B1" }, { "criteria": "cpe:2.3:a:mahara:mahara:1.4:rc3:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "621775F5-0256-4D4E-8F75-74F116029346" }, { "criteria": "cpe:2.3:a:mahara:mahara:1.4:rc4:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "06BD6041-32C5-4470-A710-E8ACDD90A719" }, { "criteria": "cpe:2.3:a:mahara:mahara:1.4.0:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "E564972A-F44F-4935-BE50-8CB8A3F6483A" } ], "operator": "OR" } ] } ]