CVE-2022-33913
20.06.2022, 16:15
In Mahara 21.04 before 21.04.6, 21.10 before 21.10.4, and 22.04.2, files can sometimes be downloaded through thumb.php with no permission check.Enginsight
Vendor | Product | Version |
---|---|---|
mahara | mahara | 21.04.0 ≤ 𝑥 < 21.04.6 |
mahara | mahara | 21.10.0 ≤ 𝑥 < 21.10.4 |
mahara | mahara | 22.04.2 |
𝑥
= Vulnerable software versions
Common Weakness Enumeration