The Original File and Patched File resources in Review Board 1.7.x before 1.7.27 and 2.0.x before 2.0.4 allow remote authenticated users to bypass intended access restrictions and obtain sensitive information from repository files by leveraging knowledge of database ids.
Published at: March 29, 2018 at 11:29PM
View on website
New vulnerability on the NVD: CVE-2014-5028
Tag: government hack NVD security
No comments: