CVE-2011-2676
03.11.2011, 10:55
The A-Form and A-Form bamboo before 1.3.6 and 2.x before 2.0.3, and A-Form PC and PC/Mobile before 3.1, plug-ins for Movable Type do not require administrative authentication, which allows remote authenticated users to modify data via unspecified vectors.Enginsight
Vendor | Product | Version |
---|---|---|
ark-web | a-form | 𝑥 ≤ 1.3.5 |
ark-web | a-form | 2.0.2 |
ark-web | a-form_bamboo | 1.3.5 |
ark-web | a-form_bamboo | 2.0.2 |
ark-web | a-form_pc | 𝑥 ≤ 3.0 |
ark-web | a-form_pc_mobile | 𝑥 ≤ 3.0 |
𝑥
= Vulnerable software versions
Common Weakness Enumeration
References