JAMWiki before 0.5.0 does not properly check permissions during moves of "read-only or admin-only topics," which allows remote attackers to make unauthorized changes to the wiki.
Link | Tags |
---|---|
http://osvdb.org/32581 | vdb entry |
http://sourceforge.net/project/shownotes.php?group_id=171441&release_id=475663 | patch |
http://secunia.com/advisories/23634 | third party advisory |
http://www.securityfocus.com/bid/21879 | vdb entry |
https://exchange.xforce.ibmcloud.com/vulnerabilities/31296 | vdb entry |