CVE-2017-1000438

Severity CVSS v4.0:
Pending analysis
Type:
Unavailable / Other
Publication date:
02/01/2018
Last modified:
03/10/2019

Description

In OMERO 5.3.3 or earlier a user could create an OriginalFile and adjust its path such that it now points to another user's file on the underlying filesystem, then manipulate the user's data.

Vulnerable products and versions

CPE From Up to
cpe:2.3:a:openmicroscopy:omero:*:*:*:*:*:*:*:* 5.3.3 (including)