CVE-2022-24694

Severity CVSS v4.0:
Pending analysis
Type:
Unavailable / Other
Publication date:
09/02/2022
Last modified:
11/02/2022

Description

In Mahara 20.10 before 20.10.4, 21.04 before 21.04.3, and 21.10 before 21.10.1, the names of folders in the Files area can be seen by a person not owning the folders. (Only folder names are affected. Neither file names nor file contents are affected.)

Vulnerable products and versions

CPE From Up to
cpe:2.3:a:mahara:mahara:*:*:*:*:*:*:*:* 20.10.0 (including) 20.10.4 (excluding)
cpe:2.3:a:mahara:mahara:*:*:*:*:*:*:*:* 21.04.0 (including) 21.04.3 (excluding)
cpe:2.3:a:mahara:mahara:21.10.0:-:*:*:*:*:*:*
cpe:2.3:a:mahara:mahara:21.10.0:rc1:*:*:*:*:*:*
cpe:2.3:a:mahara:mahara:21.10.0:rc2:*:*:*:*:*:*