Bugsalert.com
Security News about Viruses, Spyware,
Trojans, Malware, XSS attacks.

CVE-2007-6675 (Xoops)

BugsAlert Home > CVE-2007-6675 (Xoops)
 
 

The b_system_comments_show function in htdocs/modules/system/blocks/system_blocks.php in XOOPS before 2.0.18 does not check permissions, which allows remote attackers to read the comments in restricted modules.




Original Source: http://nvd.nist.gov/nvd.cfm?cvename=CVE-2007-6675

Learn more about CVE-2007-6675 (Xoops)
 
Tags: cve-2007-6675 xoops

Related Items

      Debian: New opensc packages fix smart card vulnerability

      Bugtraq: [USN-685-1] Net-SNMP vulnerabilities

      VU#544656:libFLAC contains multiple vulnerabilities

      MS08-062 - Important: Vulnerability in Windows Internet Printing Service Could Allow Remote Code Execution (953155) - Version:1.0

      CVE-2008-4332 (php_infoboard)

      Robert Sayre: Trick question!

      Phpclanwebsite <= 1.23.3 Fix Pack #5 Multiple Remote Vulnerabilities

 

Pixel