CVE-2018-14836

Severity CVSS v4.0:
Pending analysis
Type:
CWE-269 Improper Privilege Management
Publication date:
02/08/2018
Last modified:
03/10/2019

Description

Subrion 4.2.1 is vulnerable to Improper Access control because user groups not having access to the Admin panel are able to access it (but not perform actions) if the Guests user group has access to the Admin panel.

Vulnerable products and versions

CPE From Up to
cpe:2.3:a:subrion:subrion_cms:4.2.1:*:*:*:*:*:*:*


References to Advisories, Solutions, and Tools