The versions listed below are known to be affected by this issue. If you are using one of those versions, you should update to a newer release that has no known vulnerabilities.
Common Name None VWE-ID VWE-2020-5953 Related Report None Severity MEDIUM Exploit Difficulty NORMAL Platform Affects all platforms supported by the vulnerable versions. Description Permissions Escalation. A user can see certain non-area listings of content that exists in an area where that user has no permission to view the area's contents, as long as the user has permission to view the area's landing page.
Discovered October 17, 2020 Resolved November 8, 2020 Patches Available 4.1.0 Patch Level 2
4.1.0 RC 3 Patch Level 4
4.1.0 RC 2 Patch Level 5
4.1.0 RC 1 Patch Level 6
4.0.28 Patch Level 6
This page has been seen 168,000 times.
-
-
Created by on
-