Mahara before 1.5.12, 1.6.x before 1.6.7, and 1.7.x before 1.7.3 does not properly prevent access to blocks, which allows remote authenticated users to modify arbitrary blocks via the bock id in an edit request.
Loading...
Loading...
Mahara before 1.5.12, 1.6.x before 1.6.7, and 1.7.x before 1.7.3 does not properly prevent access to blocks, which allows remote authenticated users to modify arbitrary blocks via the bock id in an edit request.
May 19, 2014
May 6, 2026
See which npm, PyPI, Go, and Maven packages are affected by CVE-2013-4431
EchelonGraph automatically scans your cloud infrastructure and maps CVE exposure using blast radius analysis.