NVD

Id
70442  
Name
CVE-2005-4853  
Description
The default configuration of the forum package in eZ publish 3.5 before 3.5.5, 3.6 before 3.6.2, 3.7 before 3.7.0rc2, and 3.8 before 20050818 does not restrict edit permissions to a posting"s owner, which allows remote authenticated users to edit arbitrary postings.  
Reject
 
CVSS Version
2  
CVSS Score
9.4  
Severity
High  
CVSS Base Score
9.4  
CVSS Impact Subscore
9.2  
CVSS Exploit Subscore
10  
CVSS Vector
(AV:N/AC:L/Au:N/C:N/I:C/A:C)  
Pub Date
2017-01-03  
Published
2005-12-31  
Modified Date
2015-07-28  
Seq
2005-4853  

Actions