CVE-2008-0701 Information

Description

ActivationHandler in Magnolia CE 3.5.x before 3.5.4 does not check permissions during importing which allows remote attackers to have an unknown impact via activation of a new item possibly involving addition of arbitrary new content.

Reference

http://jira.magnolia.info/browse/MAGNOLIA-2021 http://secunia.com/advisories/28745 http://sourceforge.net/project/shownotes.php?release_id=573088 http://www.securityfocus.com/bid/27608

Share on: