Best Practical Solutions RT 3.8.x before 3.8.12 and 4.x before 4.0.6 allows remote attackers to execute arbitrary code and gain privileges via unspecified vectors, a different vulnerability than CVE-2011-4458 and CVE-2011-5093.
Weaknesses in this category are related to the management of permissions, privileges, and other security features that are used to perform access control.
Link | Tags |
---|---|
http://lists.bestpractical.com/pipermail/rt-announce/2012-May/000203.html | mailing list patch |
http://lists.bestpractical.com/pipermail/rt-announce/2012-May/000204.html | mailing list patch |
http://lists.bestpractical.com/pipermail/rt-announce/2012-May/000202.html | mailing list patch |