Sahana 'stream.php' Authentication Bypass Vulnerability
BID:38863
Info
Sahana 'stream.php' Authentication Bypass Vulnerability
| Bugtraq ID: | 38863 |
| Class: | Access Validation Error |
| CVE: |
CVE-2010-1191 |
| Remote: | Yes |
| Local: | No |
| Published: | Mar 19 2010 12:00AM |
| Updated: | Apr 13 2015 09:51PM |
| Credit: | Christopher |
| Vulnerable: |
Sahana Group Sahana 0.6.2 .2 |
| Not Vulnerable: | |
Discussion
Sahana 'stream.php' Authentication Bypass Vulnerability
Sahana is prone to an authentication-bypass vulnerability.
An attacker can exploit this issue to bypass authentication. Successful exploits may lead to other attacks.
This issue affects Sahana 0.6.2.2; other versions may also be affected.
Sahana is prone to an authentication-bypass vulnerability.
An attacker can exploit this issue to bypass authentication. Successful exploits may lead to other attacks.
This issue affects Sahana 0.6.2.2; other versions may also be affected.
Solution / Fix
Sahana 'stream.php' Authentication Bypass Vulnerability
Solution:
Updates are available. Please see the references for more information.
Solution:
Updates are available. Please see the references for more information.
References
Sahana 'stream.php' Authentication Bypass Vulnerability
References:
References:
- CVE-2010-1191 Sahana: Authentication bypass via acl_enable_acl URLs (Red Hat)
- Sahana Homepage (Sahana Group)