CVE-2009-2171
Publication date 23 June 2009
Last updated 24 July 2024
Ubuntu priority
Description
Mahara 1.1 before 1.1.5 does not apply permission checks when saving a view that contains artefacts, which allows remote authenticated users to read another user's artefact.