Bugsalert.com
Security News about Viruses, Spyware,
Trojans, Malware, XSS attacks.

CVE-2007-6222 (Interleave)

BugsAlert Home > CVE-2007-6222 (Interleave)
 
 

The CheckCustomerAccess function in functions.php in CRM-CTT Interleave before 4.2.0 (formerly CRM-CTT) does not properly verify user privileges, which allows remote authenticated users with the LIMITTOCUSTOMERS privilege to bypass intended access restrictions and edit non-active user settings. NOTE: some of these details are obtained from third party information.




Original Source: http://nvd.nist.gov/nvd.cfm?cvename=CVE-2007-6222

Learn more about CVE-2007-6222 (Interleave)
 
Tags: cve-2007-6222 interleave

Related Items

      Vuln: Mozilla Firefox/Thunderbird/SeaMonkey Multiple Remote Vulnerabilities

      Debian: New exiftags packages fix several vulnerabilities

      Bugtraq: [security bulletin] HPSBUX02351 SSRT080058 rev.2 - HP-UX Running BIND, Remote DNS Cache Poisoning

      CVE-2007-5972 (Kerberos 5)

      OSADS Unspecified Security Issue

      CVE-2008-0068 (openview_network_node_manager)

      Mandriva: 'ghostscript' arbitrary code execution

 

Pixel