CVE-2015-1613
16.02.2015, 15:59
RhodeCode before 2.2.7 allows remote authenticated users to obtain API keys and other sensitive information via the (1) update_repo, (2) get_locks, or (3) get_user_groups API method.Enginsight
Vendor | Product | Version |
---|---|---|
rhodecode | rhodecode_enterprise | 𝑥 ≤ 2.2.6 |
𝑥
= Vulnerable software versions
Common Weakness Enumeration